Input validation vulnerability in FormBuilder 1.08

The FormBuilder plugin for WordPress is vulnerable to a type of attack called SQL Injection. This is a security issue that can be exploited by people who have author-level permissions or higher. This vulnerability exists in versions up to and including 1.0.5. It occurs when the ‘fbid’ parameter is not escaped correctly and the existing SQL query is not properly prepared. This makes it easier for attackers to add their own SQL queries to existing ones, with the potential to gain access to sensitive information from the database.

Detected in:

FormBuilder open vulnerable versions: >= * < 1.08

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.