Input validation vulnerability in WP Import Export Lite 3.9.28

The WP Import Export Lite plugin for WordPress has a security issue that allows anyone with Subscriber-level access or higher to upload any type of file onto the website’s server. This could potentially lead to hackers being able to run their own code on the site.

Detected in:

WP Import Export Lite fixed vulnerable versions: >= * <= 3.9.28

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.