Input validation vulnerability in OTA Sync Booking Engine Widget 1.2.7

The plugin called OTA Sync Booking Engine Widget for WordPress is not secure and can be exploited by anyone. This is because it does not have proper security measures in place to prevent unauthorized changes to its settings. This means that hackers could potentially access and modify the plugin’s settings, allowing them to inject harmful code into the website. This could happen if they are able to trick the website administrator into clicking on a deceptive link.

Detected in:

OTA Sync Booking Engine Widget fixed vulnerable versions: >= * <= 1.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.