Input validation vulnerability in Bootstrap Shortcodes 3.4.0

The BootStrap Shortcodes plugin for WordPress is vulnerable to a type of malicious code attack. An attacker with the permission to edit posts, such as a contributor, can inject code into pages that will be executed when a user visits the page. Although it is easy to add event attributes to the tag generated by this plugin, it is unlikely that the attacker can exploit this vulnerability.

Detected in:

Bootstrap Shortcodes open vulnerable versions: >= * <= 3.4.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.