Input validation vulnerability in About Author 1.4.0

The About Author plugin for WordPress is not secure in versions up to 1.3.9. Attackers who have access to an account on a website using this plugin can inject web scripts into pages that will run when someone visits that page. This is possible because the plugin does not properly filter the input and protect the output.

Detected in:

About Author fixed vulnerable versions: >= * < 1.4.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.