Input validation vulnerability in Sitemap by BestWebSoft – WordPress XML Site Map Page Generator Plugin 3.0.8

The BestWebSoft – WordPress XML Site Map Page Generator Plugin plugin for WordPress is vulnerable to a type of attack called Reflected Cross-Site Scripting. This vulnerability existed in versions of the plugin released before version 3.0.8. This type of attack allows someone who is not authenticated (logged in) to inject malicious code into a page on the website. If a user clicks on a link with this malicious code, it can be executed. To prevent this, it is important to make sure you have the latest version of the plugin and that it is properly configured.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.