Input validation vulnerability in WP Backpack 2.1

The WP Backpack plugin for WordPress can be easily hacked through the admin settings. This can happen in any version up to 2.1 because the plugin doesn’t properly protect against harmful code being inserted. This allows attackers who have admin access to insert their own code into pages, which will then run whenever someone views that page. However, this only affects certain types of installations.

Detected in:

WP Backpack open vulnerable versions: >= * <= 2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.