Input validation vulnerability in WP-UserOnline 2.88.2

The WP-UserOnline plugin for WordPress is vulnerable to malicious code (web script) injection in all versions up to version 2.88.2. This means that unauthenticated attackers can inject web scripts into pages on the site. When a user accesses one of these pages, the malicious code will execute. This injection is possible due to a lack of security measures which would normally protect against this kind of attack.

Detected in:

WP-UserOnline fixed vulnerable versions: >= * <= 2.88.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.