Input validation vulnerability in EasyRecipe 3.5.3251

The EasyRecipe plugin for WordPress is not secure in versions up to 3.5.3251. This means that someone who is not logged in to the website can make changes to the plugin’s settings if they can get a website administrator to do an action, like clicking on a link. This is a result of the saveStyle() and updateCustomCSS() functions not having the necessary protection.

Detected in:

EasyRecipe open vulnerable versions: >= * <= 3.5.3251

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.