Input validation vulnerability in Sofass – Elementor WooCommerce WordPress Theme 1.3.4

The Sofass theme for WordPress has a security issue called Local File Inclusion in versions 1.3.4 and below. This means that anyone who is not logged in can access and run any files they want on the server. This can lead to getting secret information or being able to run code, even if the file seems safe, like an image.

Detected in:

Sofass - Elementor WooCommerce WordPress Theme open vulnerable versions: >= * <= 1.3.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.