Word Balloon

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Word Balloon 4.21.1

    Fixed

    The Word Balloon plugin for WordPress has a security issue that affects all versions up to 4.21.1. This allows attackers with a certain level of access to include and run any files on the server, whi...

    Read More
  • Input validation vulnerability in Word Balloon 4.20.2

    Fixed

    The Word Balloon plugin for WordPress is vulnerable to an attack called Cross-Site Request Forgery. This type of attack can be done in any version of the plugin up to the latest version 4.20.2. The i...

    Read More
  • Input validation vulnerability in Word Balloon 4.19.2

    Fixed

    The Word Balloon plugin for WordPress is not secure in versions up to and including 4.19.2. If someone with contributor level or higher permissions uses the plugin's shortcode

    Read More