Input validation vulnerability in iThemes Security 3.6.3

The Better WP Security plugin for WordPress has a security flaw in versions up to 3.6.3. This flaw makes it possible for attackers who have already logged into the system to insert malicious web scripts into pages. These scripts will then run whenever someone visits the page. To protect against this, users should make sure they upgrade to the latest version of the plugin, which fixes the issue.

Detected in:

iThemes Security fixed vulnerable versions: >= * <= 3.6.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.