Input validation vulnerability in Seo Meta Tags 1.4

A plugin called “Seo Meta Tags” in WordPress has a security issue known as “Cross-Site Request Forgery”. This affects versions 1.4 and below. The problem is caused by a function that does not properly check for a special code, called a “nonce”. This means that someone who is not logged in to the website can pretend to be an administrator and do things they shouldn’t be able to do. This can happen if they trick the real administrator into clicking on a link.

Detected in:

Seo Meta Tags open vulnerable versions: >= * <= 1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.