Input validation vulnerability in WPFavicon 2.1.1

The WPFavicon plugin used in WordPress can be hacked through the admin settings, which can allow attackers to insert harmful scripts that will run whenever someone visits the affected page. This only affects certain WordPress setups and versions.

Detected in:

WPFavicon open vulnerable versions: >= * <= 2.1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.