Input validation vulnerability in PrivateContent – Mail Actions 2.3.2

A plugin called PrivateContent – Mail Actions for WordPress has a security issue in versions up to 2.3.2. Hackers can use this vulnerability to access and run any file on the server without needing to log in, which means they can run any PHP code in those files. This can be used to get around security measures, get private information, or even run code when only certain types of files (like images) are allowed to be uploaded and accessed.

Detected in:

PrivateContent - Mail Actions open vulnerable versions: >= * <= 2.3.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.