Input validation vulnerability in WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg 2.0.8.1

The Groundhogg plugin for WordPress is vulnerable to a security issue called Reflected Cross-Site Scripting. This issue affects versions up to, and including, 2.0.8.1. The vulnerability exists because the plugin does not properly sanitize user input or escape output. This means that an attacker, who has successfully fooled a user into taking an action such as clicking a link, could inject malicious web scripts into pages.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.