Input validation vulnerability in wp-noexternallinks 3.5.16

The WP No External Links plugin for WordPress is vulnerable to a type of cyber attack called Reflected Cross-Site Scripting. This type of attack can occur in versions of the plugin before 3.5.16, as it does not have enough safeguards in place to protect user data. This means that unauthorised users could inject malicious web scripts into pages, which would be executed if a user clicks on a link.

Detected in:

wp-noexternallinks open vulnerable versions: >= * < 3.5.16

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.