Input validation vulnerability in Beaver Builder Addons by WPZOOM 1.3.4

The Beaver Builder Addons by WPZOOM plugin for WordPress can be hacked through the Testimonials widget in versions 1.3.4 and below. This is because the plugin does not properly protect against harmful code being added and executed on web pages. As a result, attackers with contributor-level access or higher can insert their own code into pages and it will run whenever someone views that page.

Detected in:

Beaver Builder Addons by WPZOOM fixed vulnerable versions: >= * <= 1.3.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.