High 7.2 Unfixed
2024-12-13≤ 1.4.2
WordPress WP Mega Menu plugin <= 1.4.2 - PHP Object Injection vulnerability
Minimum safe version
1.4.1
Update to 1.4.1 or later to address 6 fixable vulnerabilities
WordPress WP Mega Menu plugin <= 1.4.2 - PHP Object Injection vulnerability
WP Mega Menu < 1.4.1 - Subscriber+ Arbitrary Post Access
WP Mega Menu < 1.4.0 - Unauthenticated Arbitrary Post Access
WP Mega Menu < 1.4.1 - Reflected Cross-Site Scripting
WP Mega Menu <= 1.3.6 - Unauthenticated Settings Update to Stored Cross-Site Scripting
WordPress WP Mega Menu plugin <= 1.4.0 - Arbitrary Post Access vulnerability
WordPress WP Mega Menu plugin <= 1.3.9 - Arbitrary Post Access vulnerability