Input validation vulnerability in eCommerce Product Catalog Plugin for WordPress 3.0.71

The eCommerce Product Catalog plugin for WordPress is vulnerable to a type of attack called Reflected Cross-Site Scripting. Versions of the plugin up to 3.0.71 are affected because they do not properly sanitize and escape input. This means that an attacker could insert malicious web scripts into pages if they can get a user to click on a link.

Detected in:

eCommerce Product Catalog Plugin for WordPress fixed vulnerable versions: >= * <= 3.0.71

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.