Input validation vulnerability in WP Matterport Shortcode 2.1.7

The WP Matterport Shortcode plugin for WordPress is not secure in versions up to and including 2.1.7. Unsafe input and output could allow an attacker with contributor-level permission or higher to inject malicious web scripts into pages. If a user visits one of these pages, the malicious code can be executed.

Detected in:

Matterport Shortcode fixed vulnerable versions:
WP Matterport Shortcode open vulnerable versions: >= * <= 2.1.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.