Input validation vulnerability in WPS Limit Login 1.4.6.1

The WPS Limit Login plugin for WordPress is vulnerable to a type of attack called Cross-Site Request Forgery in versions up to 1.4.6. This type of attack can happen when a website administrator clicks a malicious link. Without the correct type of security, malicious attackers can use this link to perform administrative actions on the website, such as changing information or deleting data. The plugin does not have the correct security measures in place, leaving it vulnerable to this type of attack.

Detected in:

WPS Limit Login fixed vulnerable versions: >= * < 1.4.6.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.