Scripts n Styles

The Scripts n Styles plugin allows admin users to add custom CSS and JavaScript directly into individual posts, pages, or custom post types. It also allows for the addition of classes to the body tag and post container, and admin users can add classes to the TinyMCE "Formats" dropdown. The plugin restricts usage to admin users with the manage_options and unfiltered_html capabilities. CSS styles are embedded at the bottom of the head element and JavaScript is embedded at the bottom of the body or head element. There is no input validation, so users must be careful not to break anything.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Scripts n Styles 3.5.2

    Fixed

    The Scripts n Styles plugin for WordPress is not secure in versions up to 3.5.2. If you have this plugin installed on your WordPress website, it could be vulnerable to an attack. This only applies to...

    Read More