Input validation vulnerability in WP Masonry & Infinite Scroll 2.2

The WP Masonry & Infinite Scroll plugin for WordPress has a security issue where hackers can insert harmful code into a website using the plugin’s ‘wmis’ shortcode. This can only be done by authenticated attackers with certain levels of access, but it could cause harm to users who visit the affected pages.

Detected in:

WP Masonry & Infinite Scroll fixed vulnerable versions: >= * <= 2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.