Input validation vulnerability in AMP for WP – Accelerated Mobile Pages 1.0.92

The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting. This means that in versions 1.0.92 and earlier, people with certain permissions can put malicious code in pages that will run when other people visit the page. This is due to an oversight in how the plugin handles user-supplied data.

Detected in:

AMP for WP – Accelerated Mobile Pages fixed vulnerable versions: >= * <= 1.0.92

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.