Access violation vulnerability in Category Icon 1.0.0

A plugin called Category Icon for WordPress has a security issue. This problem, called Path Traversal, affects all versions of the plugin, even the latest one (1.0.0). It allows people who are logged in and have Author or higher access to view files on the server that they shouldn’t have access to. These files may contain private information.

Detected in:

Category Icon open vulnerable versions: >= * <= 1.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.