Input validation vulnerability in CSV Import 1.0

The CSV Import plugin for WordPress is vulnerable to security issues in versions up to, and including, 1.0. If an attacker is able to get someone to click on a link, they can inject malicious web scripts into the page, which can be used to access sensitive information or take control of the system. To prevent this from happening, it is important to make sure that all input is properly sanitized and output is properly escaped.

Detected in:

CSV Import open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.