Input validation vulnerability in Skype Legacy Buttons 3.1

The Skype Legacy Buttons plugin for WordPress has a security vulnerability that allows attackers with contributor-level or higher permissions to add malicious code to pages. This code can then be executed by anyone who accesses the page, and can be used to steal information or damage the page. The vulnerability is present in all versions up to 3.1, and is due to the plugin not properly checking user input and protecting it from malicious code.

Detected in:

Skype Legacy Buttons open vulnerable versions: >= * <= 3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.