Input validation vulnerability in Cryptocurrency Price Widget 1.2.3

The Cryptocurrency Price Widget plugin for WordPress has a security issue that could allow hackers to insert harmful code into web pages. This could happen on versions 1.2.3 and below because the plugin does not properly clean up the input and output. As a result, attackers with editor or higher level access could add their own code to web pages, which would run whenever someone views the page.

Detected in:

Cryptocurrency Price Widget fixed vulnerable versions: >= * <= 1.2.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.