Input validation vulnerability in S3bubble Amazon S3 Media Streaming 3.5.4

The S3bubble Amazon S3 Media Streaming plugin for WordPress is vulnerable to a security issue known as Reflected Cross-Site Scripting. This security issue affects all versions of the plugin up to 3.5.4, and is caused by an outdated version of jPlayer. If an unauthenticated attacker is able to get a user to click a link, they can inject malicious web scripts into the page that is displayed.

Detected in:

S3bubble Amazon S3 Media Streaming open vulnerable versions: >= * <= 3.5.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.