Input validation vulnerability in TriPay Payment Gateway 3.2.7

The TriPay Payment Gateway plugin for WordPress is vulnerable to a type of malicious attack called Stored Cross-Site Scripting. This means that if someone with administrator-level permissions on a WordPress website uses this plugin, they could unknowingly put in code that could harm people who visit the website. This only applies to WordPress websites with multiple sites and those that do not allow unfiltered_html. All versions of this plugin up to and including 3.2.7 are affected.

Detected in:

TriPay Payment Gateway open vulnerable versions: >= * <= 3.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.