Input validation vulnerability in WooCommerce Product Enquiry 2.3.4

The WooCommerce Product Enquiry plugin for WordPress is a tool that can be used to ask questions about products. Unfortunately, in versions up to and including 2.3.4, the plugin is not secure and makes it possible for unauthenticated attackers to inject malicious code into the webpage. This would require the attacker to be able to convince somebody to enter the malicious code into the form fields.

Detected in:

WooCommerce Product Enquiry open vulnerable versions: >= * <= 2.6.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.