Input validation vulnerability in CIP4 Folder Download Widget 1.11

The CIP4 Folder Download Widget plugin for WordPress is a security risk for versions 1.10 and earlier. Attackers without authorization can access and execute files on the server, which could allow them to view confidential information, bypass access controls, or even run code. This is possible because it is possible to upload and include images and other types of files, which usually considered safe.

Detected in:

CIP4 Folder Download Widget open vulnerable versions: >= * < 1.11

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.