Input validation vulnerability in EasyRotator for WordPress – Slider Plugin 1.0.14

The EasyRotator for WordPress plugin is vulnerable to a security issue called Stored Cross-Site Scripting. This means that if a user with certain permissions (contributor-level and above) adds something to a page using the plugin’s shortcode, it could allow malicious code to be stored and executed when the page is viewed. This affects all versions of the plugin up to version 1.0.14.

Detected in:

EasyRotator for WordPress – Slider Plugin open vulnerable versions: >= * <= 1.0.14

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.