Input validation vulnerability in SmokeSignal 1.2.7

The Smoke Signal plugin for WordPress, used in versions prior to 1.2.7, has a security vulnerability. This means that if someone with a low level of privilege was to gain access, they could inject malicious web scripts into certain pages. When visited by a user, these pages would then execute the malicious scripts, allowing the attacker to gain access to user data or other sensitive information. To protect yourself, make sure to update to the latest version of the plugin.

Detected in:

SmokeSignal fixed vulnerable versions: >= * < 1.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.