Input validation vulnerability in Libsyn Publisher Hub 1.4.4

The Libsyn Publisher Hub plugin for WordPress can be attacked by hackers using a technique called Stored Cross-Site Scripting. This is because the plugin does not properly protect against harmful code being injected into its pages. This vulnerability affects versions 1.4.4 and below, and it allows attackers with contributor-level access or higher to insert their own code onto pages, which will then run whenever a user visits that page.

Detected in:

Libsyn Publisher Hub open vulnerable versions: >= * <= 1.4.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.