Input validation vulnerability in WP Calameo 2.1.7

The WordPress Calameo plugin, which is used with WordPress websites, has a security issue called Stored Cross-Site Scripting. This means that in older versions of the plugin, up to version 2.1.7, there is not enough protection in place to prevent malicious code from being added to pages. This can be done by someone who has contributor-level access or higher, and the code will be executed when a user visits the affected page.

Detected in:

WP Calameo fixed vulnerable versions: >= * <= 2.1.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.