Input validation vulnerability in Cities Shipping Zones for WooCommerce 1.2.7

The plugin used for shipping zones in WordPress, called Cities Shipping Zones for WooCommerce, has a security vulnerability in versions 1.2.7 and below. This means that attackers with Shop Manager-level access or higher can access and run any files on the server, including PHP code. This can lead to unauthorized access, stealing of private information, or the ability to run code even if the file type is considered safe.

Detected in:

Cities Shipping Zones for WooCommerce fixed vulnerable versions: >= * <= 1.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.