Input validation vulnerability in GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress 7.2.1

The GamiPress plugin for WordPress, which is used to give rewards such as points, achievements, badges, and ranks, has a security vulnerability. This vulnerability allows unauthenticated attackers to add their own SQL queries to the plugin, which can be used to access sensitive information from the database. This vulnerability exists in all versions up to 7.2.1 and is caused by a lack of proper protection on user-supplied data and the existing SQL query.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.