Input validation vulnerability in Shortcodes and extra features for Phlox theme 2.15.5

The Phlox theme plugin for WordPress has a vulnerability that allows attackers to inject harmful code into web pages. This can happen when someone with contributor access or higher adds custom code to the plugin. This vulnerability exists in all versions up to 2.15.5 because the plugin does not properly clean the input and output.

Detected in:

Shortcodes and extra features for Phlox theme open vulnerable versions: >= * <= 2.15.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.