Input validation vulnerability in FoodBakery | Delivery Restaurant Directory WordPress Theme 1.9

The FoodBakery theme for WordPress has a security vulnerability which can be exploited by unauthenticated attackers. This vulnerability affects versions of the theme up to and including 1.9. It allows attackers to inject malicious web scripts into pages by sending a link to a user and convincing them to click it. The vulnerability is caused by the theme failing to properly sanitize and secure the ‘location’ parameter.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.