Access violation vulnerability in Redirection for Contact Form 7 2.9.2

The Redirection for Contact Form 7 plugin for WordPress is a tool used to help manage website visitors who submit contact forms. A security issue has been discovered in versions up to and including 2.9.2 which could allow unauthenticated attackers to access lead data, which is information collected from visitors who fill out contact forms. This is due to a missing capability check on the export_current_filtered_view() function hooked via admin_init.

Detected in:

Redirection for Contact Form 7 fixed vulnerable versions: >= * <= 2.9.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.