Input validation vulnerability in oik 4.10.3

The oik plugin for WordPress has a security issue that allows hackers to insert harmful code into web pages using the plugin’s bw_button feature. This can happen in any version up to 4.10.3. The problem is caused by the plugin not properly checking the information that users provide and not properly protecting the output. This means that someone with contributor-level access or higher can add code that will run when someone visits the affected web page.

Detected in:

oik fixed vulnerable versions: >= * <= 4.10.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.