Input validation vulnerability in Woocommerce osCommerce Sync 2.0.20

The Woocommerce osCommerce Sync plugin for WordPress has a security issue that allows attackers to inject harmful web scripts into pages. This can happen on any version up to 2.0.20 because the plugin does not properly clean and protect user input. This means that anyone, even without an account, can add dangerous code to a page that will run whenever someone views it.

Detected in:

Woocommerce osCommerce Sync open vulnerable versions: >= * <= 2.0.20

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.