Input validation vulnerability in CarDealerPress 6.6.2410.02

A popular plugin called CarDealerPress for the WordPress website platform has a security issue. This issue, called Reflected Cross-Site Scripting, can occur in versions up to 6.6.2410.02. This happens because the plugin does not properly clean up the information it receives and sends out. This means that people who are not logged in can insert harmful code into a webpage. They can do this by tricking a user into clicking a link.

Detected in:

CarDealerPress open vulnerable versions: >= * <= 6.6.2410.02

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.