Input validation vulnerability in Custom Field Suite 2.6.7

The Custom Field Suite plugin for WordPress has a security issue known as SQL Injection. This means that there is a way for someone with contributor access or higher to add their own commands to the existing database commands. This can potentially allow them to access confidential information from the database.

Detected in:

Custom Field Suite open vulnerable versions: >= * <= 2.6.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.