Input validation vulnerability in Курс валют UAH 2.0

The plugin called “Курс валют UAH” for WordPress is not safe to use. Versions up to 2.0 have a vulnerability called “Stored Cross-Site Scripting” because they don’t properly clean or protect the information that is put in and taken out. This means that someone who is logged in and has contributor or higher level access can add harmful web scripts to pages. These scripts will run whenever someone visits the page that has the harmful scripts.

Detected in:

Курс валют UAH open vulnerable versions: >= * <= 2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.