Input validation vulnerability in Bubble Menu – circle floating menu 3.0.3

The Bubble Menu plugin for WordPress is not secure in versions up to 3.0.3. Unauthenticated attackers can inject web scripts into pages which can be executed if a user clicks on a link. This is due to the plugin not properly protecting against malicious input and not escaping output properly.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.