Input validation vulnerability in WPCS – WordPress Currency Switcher Professional 1.2.0.1

A popular plugin for WordPress called WPCS has a security issue that affects versions 1.2.0.1 and earlier. The problem is that the plugin does not properly check for a special code when saving certain information, leaving it open to attacks from people who are not authorized to access it. This means that someone could change the plugin’s settings without permission if they can get a website admin to do something, like click on a link.

Detected in:

WPCS – WordPress Currency Switcher Professional open vulnerable versions: >= * <= 1.2.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.