Input validation vulnerability in MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar 5.9.3

The MP3 Audio Player is a popular plugin for WordPress that allows users to listen to music, podcasts, and radio. However, it has a security vulnerability known as Stored Cross-Site Scripting. This means that hackers can inject harmful scripts into the plugin’s RSS Feed, which could potentially harm users who access the affected pages. This vulnerability affects all versions up to 5.9.3, and can be exploited by attackers with contributor-level access or higher.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.