Input validation vulnerability in WordPress Simple HTML Sitemap 2.1

The WP Simple HTML Sitemap plugin for WordPress is not secure in versions up to 2.1. This means that people with access privileges at the level of “contributor” or higher can add malicious code to pages which will run anytime someone looks at the injected page. In order to make sure this malicious code does not run, the plugin must be updated to a secure version.

Detected in:

WordPress Simple HTML Sitemap open vulnerable versions: >= * <= 2.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.