Input validation vulnerability in WordPress Старт 3.6

The Старт plugin for WordPress is not secure in versions 3.6 and earlier. People with administrator-level access or higher can inject malicious code into pages. This code will run when someone views the page. This problem only happens on websites that have multiple sites and have disabled the “unfiltered_html” feature.

Detected in:

WordPress Старт open vulnerable versions: >= * <= 3.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.