Input validation vulnerability in Tito 2.3

The Tito plugin for WordPress has a security issue called Stored Cross-Site Scripting. This can happen in versions 2.3 and earlier because the input is not properly checked and the output is not protected. This means that people who are logged in and have contributor-level or higher access can put harmful code into pages. When someone views these pages, the code will run.

Detected in:

Tito open vulnerable versions: >= * <= 2.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.