Input validation vulnerability in Sydney Toolbox 1.25

The Sydney Toolbox plugin for WordPress has a security issue that allows hackers to insert harmful code into web pages using the plugin’s aThemes Slider button. This can happen in all versions of the plugin, up to and including version 1.25. The problem occurs because the plugin does not properly check and protect against dangerous links that users provide. As a result, attackers who have contributor-level or higher permissions can add their own code to pages, which will then run whenever someone visits those pages.

Detected in:

Sydney Toolbox fixed vulnerable versions: >= * <= 1.25

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.