Input validation vulnerability in WordPress Tooltips 9.4.3

The WordPress Tooltips plugin, which is used on WordPress websites, has a security issue that could allow hackers to access sensitive information from the website’s database. This vulnerability exists in all versions up to 9.4.3 and is caused by not properly escaping user-supplied input and not adequately preparing the SQL query. This means that attackers who have contributor-level access or higher could potentially add their own code to existing queries and gain access to sensitive data.

Detected in:

Tooltips for WordPress fixed vulnerable versions:
WordPress Tooltips fixed vulnerable versions: >= * <= 9.4.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.