Input validation vulnerability in Testimonial Carousel For Elementor 10.1.1

The Testimonial Carousel For Elementor plugin for WordPress is not secure and can be easily hacked. This is because it doesn’t properly clean or protect the information that is entered into the ‘show_line_text’ and ‘slide_button_hover_animation’ areas. This means that someone with contributor-level permissions or higher can add harmful code to a page that will run whenever someone views that page.

Detected in:

Testimonial Carousel For Elementor fixed vulnerable versions: >= * <= 10.1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.