Input validation vulnerability in SERPed.net 4.6

The SERPed.net plugin for WordPress has a security issue called Reflected Cross-Site Scripting. This can happen in versions 4.6 and below because it doesn’t properly clean up the input and output. This means that people who are not logged in can add harmful code to a page and it will run if they can trick someone into clicking a link.

Detected in:

SERPed.net open vulnerable versions: >= * <= 4.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.