Input validation vulnerability in Tournament Bracket Generator 1.0.0

The Tournament Bracket Generator plugin for WordPress has a security issue that allows hackers to insert harmful code into web pages. This can be done by using the ‘bracket’ feature of the plugin. The problem exists in all versions up to 1.0.0, and is caused by the plugin not properly filtering and protecting user-provided information. This means that anyone with contributor-level access or higher can potentially add malicious scripts to pages, which will then run whenever someone visits that page.

Detected in:

Tournament Bracket Generator open vulnerable versions: >= * <= 1.0.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.