Input validation vulnerability in User Submitted Posts – Enable Users to Submit Posts from the Front End 20230811

The User Submitted Posts plugin for WordPress is vulnerable to a type of security issue called Stored Cross-Site Scripting. This is when an attacker with certain permissions can inject malicious code into a webpage. The code will be executed whenever a user visits the page, which could compromise their data or take control of their device. To protect from this, the plugin requires updates to make sure user input is properly sanitized and output is properly escaped. Versions up to and including 20230811 of the plugin are affected.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.