Beta

Report

Menu Item Visibility Control <= 0.5 is vulnerable to Auth. Arbitrary PHP Code Execution vulnerability

Administrator
Published
2022-11-28

The Menu Item Visibility Control plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 0.5 via the 'visibility logic' option. This allows administrator-level attackers to execute code on the server.

CVSS

Score:7.2

Severity:High

Version: 0.5

The plugin vendor has not patched this vulnerability at the moment.