Input validation vulnerability in WP Service Payment Form With Authorize.net 2.6.3

The WP Service Payment Form With Authorize.net plugin for WordPress is at risk of a type of cyber attack called Reflected Cross-Site Scripting. This is because the plugin does not properly protect against harmful code being entered into the ‘page’ section of the form. This means that someone who is not logged in or authorized could potentially insert harmful scripts into the website that could be activated if a user clicks on a link.

Detected in:

WP Service Payment Form With Authorize.net open vulnerable versions: >= * <= 2.6.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.