Input validation vulnerability in Htaccess by BestWebSoft – WordPress Website Access Control Plugin 1.7.6

The plugin “”Htaccess by BestWebSoft – WordPress Website Access Control Plugin”” for WordPress is not secure in versions up to 1.7.5. This is because it does not properly check and filter the ‘category’ input and does not escape output. This allows someone who is not logged in to embed malicious code into a link and trick a victim into clicking it. If the victim clicks the link

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.