Input validation vulnerability in Import any XML or CSV File to WordPress PRO 4.1.1

The Import any XML or CSV File to WordPress plugin for WordPress has a security vulnerability. It affects versions up to 3.2.4. An attacker with administrative capabilities can use this vulnerability to gain access to sensitive information from the database. This happens when there is not enough security to prevent the user-supplied parameter from being used in an unsafe way.

Detected in:

Import any XML or CSV File to WordPress fixed vulnerable versions: >= * <= 3.2.4
Import any XML or CSV File to WordPress PRO fixed vulnerable versions: >= * <= 4.1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.