Input validation vulnerability in Donate Me 1.2.5

The Donate Me plugin for WordPress has a security vulnerability that allows unauthorized users to inject harmful web scripts into pages. This can happen in versions 1.2.5 and below because the plugin does not properly clean up the input and output. This means that even users with subscriber-level access or higher can insert code into pages that will run when other users visit those pages.

Detected in:

Donate Me open vulnerable versions: >= * <= 1.2.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.