Input validation vulnerability in Donations Made Easy – Smart Donations 4.0.12

The Donations Made Easy – Smart Donations plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This attack could allow unauthenticated attackers to inject malicious scripts into webpages that will execute whenever someone visits them. This vulnerability affects all versions up to and including 4.0.12 because it does not properly sanitize and escape inputs and outputs.

Detected in:

Donations Made Easy – Smart Donations open vulnerable versions: >= * <= 4.0.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.