Input validation vulnerability in Contact Form to Any API 1.1.8

The plugin called “Contact Form to Any API” for WordPress has a security issue called SQL Injection. This means that hackers with certain access can add their own codes to the plugin, which can then be used to get private information from the database. This problem exists in all versions of the plugin up to version 1.1.8.

Detected in:

Contact Form to Any API fixed vulnerable versions: >= * <= 1.1.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.