Input validation vulnerability in MultiVendorX – WooCommerce Multivendor Marketplace Solutions 4.2.22

The MultiVendorX plugin for WordPress has a security issue called Stored Cross-Site Scripting. This can happen in versions up to 4.2.22 because the plugin does not properly clean and protect the information it receives and displays. This means that attackers who have logged in and have contributor-level access or higher can add harmful web scripts to pages. These scripts will run whenever someone visits the affected page.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.