Input validation vulnerability in Ninja Forms – The Contact Form Builder That Grows With You 3.8.19

The Ninja Forms plugin for WordPress has a security issue called Stored Cross-Site Scripting. This can happen in all versions up to 3.8.19. The problem is caused by not properly cleaning and protecting input and output. This means that people who are not logged in can add their own code to a page, which will then run whenever someone views that page.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.