Input validation vulnerability in Track Geolocation Of Users Using Contact Form 7 1.4

The Track Geolocation Of Users Using Contact Form 7 plugin for WordPress contains a vulnerability that allows attackers with administrator-level permissions to inject malicious scripts into webpages. If these pages are viewed by users, the malicious scripts would be able to execute. This vulnerability applies to all versions of the plugin up to and including version 1.4, and affects multi-site installations and installations where unfiltered_html has been disabled.

Detected in:

Track Geolocation Of Users Using Contact Form 7 open vulnerable versions: >= * <= 2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.