Input validation vulnerability in Astra 4.6.8

The Astra theme for WordPress has a security issue where a malicious user’s display name can be used to inject harmful web scripts onto pages. This can be done by attackers with certain levels of access, and it affects all versions of the theme up to 4.6.8.

Detected in:

Astra fixed vulnerable versions: >= * <= 4.6.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.