Input validation vulnerability in Wishfull blog (2.0.1) and Raise Mag (1.0.7) themes

The Wishful Blog theme and the Raise Mag theme for WordPress are vulnerable to a type of cyber attack called Cross-Site Scripting. This attack can allow an unauthenticated attacker to inject web scripts into pages. When a user visits these pages, the web scripts can execute. To prevent this from happening, developers should make sure they properly sanitize and escape user input and output.

Detected in:

Wishful Blog fixed vulnerable versions: >= * <= 2.0.1
Raise Mag open vulnerable versions: >= * <= 1.0.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.