Input validation vulnerability in InPost Gallery 2.1.4.5

The InPost Gallery plugin for WordPress has a security issue in versions 2.1.4.5 and below. This can be exploited by attackers with subscriber-level access or higher to include and run any files on the server, which could contain harmful PHP code. This can be used to bypass security measures, access private information, or run code even if only images or other safe files are allowed to be uploaded.

Detected in:

InPost Gallery fixed vulnerable versions: >= * <= 2.1.4.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.