Input validation vulnerability in WordPress Countdown Widget 3.1.9.1

The WordPress Countdown Widget plugin contains a security vulnerability that allows attackers with administrator-level permissions to inject malicious web scripts in pages. This vulnerability affects versions up to and including 3.1.9.1 and is caused by insufficient sanitization of data input and lack of output escaping. This means that when a user visits an affected page, the malicious web scripts will execute.

Detected in:

WordPress Countdown Widget fixed vulnerable versions: >= * <= 3.1.9.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.