Input validation vulnerability in Comments – wpDiscuz 7.6.10

The wpDiscuz plugin for WordPress is vulnerable to a type of security problem called Arbitrary Content Injection in versions up to 7.6.10. This vulnerability allows unauthenticated attackers (people who don’t have permission to be on the website) to add new content to the website without authorization. This could be used to make new web pages, post spam, or phishing attempts. The cause of this vulnerability is not known yet.

Detected in:

Comments – wpDiscuz fixed vulnerable versions: >= * <= 7.6.10

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.