Input validation vulnerability in AZAN Plugin 0.6

The AZAN Plugin for WordPress has a security issue known as Cross-Site Request Forgery, which affects all versions up to 0.6. This means that the plugin does not properly check for a specific code, allowing attackers who are not logged in to change the plugin’s settings and insert harmful scripts into the website, as long as they can trick the site’s administrator into taking a specific action, like clicking on a link.

Detected in:

AZAN Plugin fixed vulnerable versions: >= * <= 0.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.