Input validation vulnerability in Special Feed Items 1.0.1

The Special Feed Items plugin used in WordPress has a security issue that allows unauthorized users to manipulate the plugin’s settings and insert harmful code into the website. This vulnerability exists in all versions up to 1.0.1. It occurs because the plugin does not properly check for a security code called a “nonce” before carrying out certain functions. This means that if someone can trick the website’s administrator into clicking on a link, they can make changes to the plugin without permission.

Detected in:

Special Feed Items open vulnerable versions: >= * <= 1.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.