Input validation vulnerability in WebHotelier for WordPress 1.9.2

The WebHotelier plugin, a tool used with the WordPress website platform, has a security flaw that allows for Stored Cross-Site Scripting. This means that in versions 1.9.2 and below, the plugin does not properly filter and protect against malicious code being inserted into website pages. This can be exploited by hackers with contributor-level access or higher to insert harmful web scripts that will run whenever a user visits the affected page.

Detected in:

WebHotelier for WordPress fixed vulnerable versions: >= * <= 1.9.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.