Pricing
Case studies
Login
Start trial
Advanced Custom Fields PRO
N/A
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
No VDP
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
17 patched
5 Mitigation rules
Authenticated (Admin+) Stored Cross-Site Scripting vulnerability
<= 6.3.8
16/10/2024
Administrator+ Limited Arbitrary Function Call vulnerability
<= 6.3.7
09/10/2024
Missing Authorization to Information Disclosure vulnerability
< 5.11
04/10/2024
Missing Authorization to Information Disclosure vulnerability
< 5.11
04/10/2024
Missing Authorization on Option Changes vulnerability
< 5.11
04/10/2024
Cross-Site Request Forgery (CSRF) vulnerability
< 6.3.2
26/06/2024
Subscriber+ Broken Access Control vulnerability
< 6.3.2
26/06/2024
Contributor+ Broken Access Control vulnerability
< 6.3.2
26/06/2024
Auth. Custom Field Access vulnerability
< 6.3
03/06/2024
Contributor+ Local File Inclusion vulnerability
< 6.2.10
15/05/2024
Contributor+ Arbitrary Function Execution vulnerability
< 6.2.10
15/05/2024
Contributor+ Stored Cross-Site Scripting vulnerability
< 6.2.5
16/01/2024
Auth. Stored Cross-Site Scripting (XSS) vulnerability
6.1-6.1.7
10/08/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 6.1.5
05/05/2023
Contributor+ PHP Object Injection vulnerability
< 6.1.0
02/05/2023
Unauthenticated File Upload vulnerability
<= 5.12.2
01/08/2022
Reflected Cross-Site Scripting (XSS) vulnerability
<= 5.9.0
02/04/2021