Input validation vulnerability in iframe Shortcode 2.0

The iframe Shortcode plugin for WordPress may have a security vulnerability that allows an attacker with contributor-level or higher permission to inject malicious web scripts into WordPress pages. This vulnerability exists in all versions of the plugin up to and including version 2.0. It is caused by the plugin not properly validating or escaping user-supplied data. If a page with an injected script is accessed, the malicious script will be executed.

Detected in:

iframe Shortcode open vulnerable versions: >= * <= 2.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.