Input validation vulnerability in Amazon Affiliate 3.17

The Amazon Affiliate plugin for WordPress is vulnerable to a type of attack called Reflected Cross-Site Scripting. This means that if someone can find a way to get you to click on a link, they can inject malicious code into a page. This vulnerability affects versions of the plugin up to and including version 3.17, since the plugin does not properly protect against malicious code and does not adequately check the links you click on.

Detected in:

Amazon Affiliate fixed vulnerable versions: >= * <= 3.17

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.