Output validation vulnerability in Kids Heaven – Children Education WordPress Theme 3.2

The Kids Heaven theme for WordPress has a security issue where untrusted input can be used to inject a PHP Object. This could be done by an authenticated attacker with at least subscriber-level access. There is no known solution for this issue, but if there is another plugin or theme installed, it could potentially lead to the attacker being able to delete files, access sensitive information, or run code.

Detected in:

Kids Heaven - Children Education WordPress Theme open vulnerable versions: >= * <= 3.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.