Input validation vulnerability in Time Clock – A WordPress Employee & Volunteer Time Clock Plugin 1.3.1

The Time Clock is a plugin for WordPress that helps track the time of employees and volunteers. However, it has a vulnerability where malicious code can be inserted through the ‘data’ section. This can be done by someone who has access to the Time Clock with their own credentials, allowing them to add harmful scripts to pages that will run whenever someone visits those pages.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.