Input validation vulnerability in Content Staging 2.0.1

The Content Staging WordPress plugin has a security issue that could let attackers take control of websites. This problem affects any website that uses the plugin and has either disabled unfiltered_html for administrators or disabled it completely. Versions of the plugin up to and including 2.0.1 are vulnerable because of the way it handles input validation and escaping. Attackers who have access to the website as an administrator can inject malicious web scripts into the system via the ~/templates/settings.php file.

Detected in:

Content Staging open vulnerable versions: >= * <= 2.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.