The WP All Import plugin for WordPress is not secure in versions 3.6.7 and earlier. Attackers with administrative privileges can use this vulnerability to run any code they want on your website.
Documentation: Home / Vulnerabilities / Input validation vulnerability in Import any XML or CSV File to WordPress *3.6.7
The WP All Import plugin for WordPress is not secure in versions 3.6.7 and earlier. Attackers with administrative privileges can use this vulnerability to run any code they want on your website.
This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!
Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:
> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21
Is this information incorrect? Please leave us a message.
© Really Simple Plugins
CoC 70461155
Kalmarweg 14-5
9723 JG, Groningen (NL)