Input validation vulnerability in metro 2.13

The Metro theme for WordPress has a security issue in versions up to 2.13. This means that people who are not logged in can access and run any file they want on the server, including PHP files. This can be used to get around security measures, get private information, or run code even if only “safe” files are allowed to be uploaded and used.

Detected in:

metro open vulnerable versions: >= * <= 2.13

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.