Input validation vulnerability in Copy or Move Comments 1.0.1

The Copy or Move Comments plugin for WordPress is vulnerable to security issues which could allow unauthenticated attackers to inject malicious web scripts into pages that could be executed if the user performs an action such as clicking on a link. Also, authenticated attackers can extract sensitive information from the database due to the plugin’s lack of input sanitization and output escaping in versions up to and including 1.0.0.

Detected in:

Copy or Move Comments open vulnerable versions: >= * < 1.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.