Input validation vulnerability in Unsafe Mimetypes 0.1.4

The Unsafe Mimetypes plugin for WordPress has a security issue that affects all versions up to 0.1.4. This is because the plugin does not properly check for a security code called a nonce when performing a certain function. This allows hackers who are not logged in to make changes to the plugin’s settings and insert harmful code into the website. They can do this by tricking the website’s administrator into clicking on a link.

Detected in:

Unsafe Mimetypes open vulnerable versions: >= * <= 0.1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.