Input validation vulnerability in Auto FTP 1.0.1

The Auto FTP plugin for WordPress has a security vulnerability that affects all versions up to 1.0.1. This is because it does not properly check for a specific code (called a nonce) when performing a certain function. This means that someone who is not logged in could potentially make changes to the plugin’s settings and add harmful code to the website if they can convince the site administrator to click on a link.

Detected in:

Auto FTP open vulnerable versions: >= * <= 1.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.