Input validation vulnerability in Clio Grow 1.0.2

The Clio Grow plugin for WordPress has a security issue called “Reflected Cross-Site Scripting.” This happens because the plugin doesn’t properly protect the URL in all versions, up to and including 1.0.2. This means that if someone who isn’t logged in tries to manipulate the URL, they could add harmful web scripts to the page. This could happen if they deceive a user into clicking on a link.

Detected in:

Clio Grow open vulnerable versions: >= * <= 1.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.