Input validation vulnerability in WP Mega Menu 1.3.6

The WP Mega Menu plugin for WordPress has a security vulnerability that could allow unauthenticated attackers to update the plugin’s settings and inject malicious web scripts. This vulnerability affects versions up to 1.3.6 of the plugin, and is caused by a missing capability check and insufficient validation.

Detected in:

WP Mega Menu open vulnerable versions: >= * <= 1.3.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.