Input validation vulnerability in Insert PHP Code Snippet 1.3.4

A popular plugin for WordPress called “Insert PHP Code Snippet” has a security issue that allows attackers to insert harmful code into pages. This can happen when the plugin is used to manage code snippets and the user’s name is not properly checked for harmful code. This can only happen on certain types of WordPress websites and if the website has a particular setting turned off.

Detected in:

Insert PHP Code Snippet fixed vulnerable versions: >= * <= 1.3.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.