Input validation vulnerability in Table of Contents Block 1.0.2

The Table of Contents Block plugin for WordPress has a security issue that makes it vulnerable to a type of attack called Stored Cross-Site Scripting. This can happen in versions 1.0.2 and earlier because the plugin does not properly clean and protect the information it receives and shows. This allows hackers who have contributor-level or higher access to add harmful code to pages that will run whenever someone visits that page.

Detected in:

Table of Contents Block open vulnerable versions: >= * <= 1.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.