Input validation vulnerability in Knews Multilingual Newsletters 1.7.0

The Knews Multilingual Newsletters plugin for WordPress has a security flaw which allows unauthenticated attackers to access sensitive information from the database. This is possible because of insufficient escaping of user supplied parameters and lack of preparation of existing SQL queries in versions up to, and including, 1.7.0.

Detected in:

Knews Multilingual Newsletters open vulnerable versions: >= * <= 1.7.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.