Input validation vulnerability in WP To Do 1.3.0

The WP To Do plugin used for WordPress has a security issue in versions 1.3.0 and below. This is because it does not properly protect against harmful code being entered and displayed on web pages. This vulnerability can be exploited by someone who is logged in and has at least contributor-level access, allowing them to add dangerous web scripts to pages that will run when another user visits that page.

Detected in:

WP To Do open vulnerable versions: >= * <= 1.3.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.