Input validation vulnerability in Animated Counters 2.0

The Animated Counters plugin for WordPress is at risk of a security issue called Stored Cross-Site Scripting. This means that the plugin’s “animatedcounte” tool can be used to insert harmful code into web pages. This can happen in any version of the plugin up to version 2.0. The problem is caused by not properly checking and filtering the information that users input, which allows hackers with certain permissions to add their own code to a page. When a user visits the page with the injected code, it will run and potentially cause harm.

Detected in:

Animated Counters open vulnerable versions: >= * <= 2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.