Input validation vulnerability in Customer Service Software & Support Ticket System 5.13

The Customer Service Software & Support Ticket System plugin for WordPress has a security vulnerability in versions up to and including 5.12.0. If you have a multi-site installation or have disabled unfiltered_html, this vulnerability could allow attackers with administrator-level permissions to inject malicious web scripts onto pages that will run whenever someone accesses them. This is because there is not enough protection against malicious input or enough security measures in place to prevent the scripts from running.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.