Input validation vulnerability in Magic Action Box 2.17.2

The Magic Action Box plugin for WordPress has a security vulnerability that can be exploited by an attacker with contributor-level permissions or higher. This vulnerability allows the attacker to inject malicious web scripts into web pages, which will then execute whenever someone accesses the page. This vulnerability affects all versions of the plugin up to and including version 2.17.2, due to inadequate input filtering and output escaping of user input.

Detected in:

Magic Action Box open vulnerable versions: >= * <= 2.17.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.