Input validation vulnerability in Time Based Greeting 2.2.2

A plugin called Time Based Greeting for WordPress has a security issue called Cross-Site Request Forgery. This affects all versions up to 2.2.2. The problem is that the plugin does not properly check for a security code, making it possible for someone without an account to change settings and insert harmful code on the website if they can trick the person in charge into doing something like clicking a link.

Detected in:

Time Based Greeting open vulnerable versions: >= * <= 2.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.