Input validation vulnerability in User Submitted Posts – Enable Users to Submit Posts from the Front End 20230901

The User Submitted Posts plugin for WordPress has a security vulnerability that could allow an attacker with contributor-level access or higher to inject malicious web scripts into pages. These scripts would then be executed when users visit these pages. The vulnerability exists in all versions of the plugin up to and including 20230901 because input is not properly sanitized and output is not properly escaped.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.