Input validation vulnerability in WPBakery Page Builder 8.6.1

The WPBakery Page Builder plugin for WordPress has a security issue that makes it vulnerable to attacks. This is because it doesn’t properly filter and protect against harmful code that users can input into the Custom JS module. This means that people with certain levels of access can inject harmful web scripts into pages, which will then run whenever someone views that page using the Custom JS module in WPBakery Page Builder.

Detected in:

WPBakery Page Builder fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.