Input validation vulnerability in E-Search 1.0

A security issue has been discovered in the WordPress plugin e-Search. This issue would allow an attacker to inject malicious code into a website when someone uses the e-Search plugin to search for something. The malicious code could be used to take control of the website or to access sensitive information. The version of the plugin affected is v1.0 and the issue is related to the “title_az” parameter.

Detected in:

E-Search open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.