Input validation vulnerability in ImmoPress 0.0.4

The ImmoPress plugin for WordPress, up to and including version 0.0.4, is vulnerable to a security issue known as Reflected Cross-Site Scripting. This means that an attacker who is able to trick a user into clicking on a link could inject malicious web scripts into pages. This happens because the plugin includes an example file with an OAuth SDK that does not properly sanitize input or escape output.

Detected in:

ImmoPress open vulnerable versions: >= * <= 0.0.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.