Input validation vulnerability in Pliska 0.3.5

The Pliska theme for WordPress has a security issue where hackers can inject harmful code into pages using the names of authors. This can happen in all versions up to 0.3.5 because the theme does not properly clean or protect the information provided by users. This means that attackers with a certain level of access can make the harmful code run whenever a user visits the affected page.

Detected in:

Pliska fixed vulnerable versions: >= * <= 0.3.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.