Input validation vulnerability in Best Chart Plugin – Chartify 1.9.6

The Chartify plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting. This means that if someone with administrator-level permissions has access to the settings of this plugin, they could inject malicious code into web pages. This malicious code would then be executed when the page is accessed. This security issue only affects WordPress multi-site installations and installations where unfiltered_html has been disabled. Updating to the latest version will protect you from this vulnerability.

Detected in:

Best Chart Plugin – Chartify fixed vulnerable versions: >= * <= 1.9.6
Chartify – WordPress Chart Plugin fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.