Input validation vulnerability in Top 10 – Popular posts plugin for WordPress 2.4.4

The Top 10 – Popular posts WordPress plugin, up to version 2.4.3, has a vulnerability that allows people with admin level access to extract sensitive information from the database. This happens because the plugin does not properly escape the user supplied parameter or properly prepare the existing SQL query, making it possible for attackers to append additional SQL queries.

Detected in:

Top 10 – Popular posts plugin for WordPress fixed vulnerable versions: >= * < 2.4.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.