Input validation vulnerability in Simplish 2.6.4

The Simplish theme for WordPress has a security issue called Stored Cross-Site Scripting. This can happen in versions 2.6.4 and below because the theme does not properly clean up or protect against harmful code. This means that someone who has an account with at least subscriber-level access can add code to a page that will run when someone else visits that page.

Detected in:

Simplish open vulnerable versions: >= * <= 2.6.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.