Input validation vulnerability in Crowdsignal Dashboard – Polls, Surveys & more 2.0.24

The Polldaddy Polls & Rating for WordPress plugin has a security issue that can allow unauthenticated attackers to inject malicious code into pages. This issue is present in all versions up to and including 2.0.24, and occurs because the plugin does not properly sanitize and escape data that is inputted and outputted. If an attacker can trick a user into clicking on a link, they can inject code that can be executed in the page.

Detected in:

Crowdsignal Dashboard – Polls, Surveys & more fixed vulnerable versions: >= * < 2.0.24

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.