Input validation vulnerability in Migration, Backup, Staging – WPvivid 0.9.89

The Migration, Backup, Staging – WPvivid plugin for WordPress has a vulnerability that could allow an attacker with administrator-level permissions to inject malicious code into pages. This vulnerability affects multi-site installations and installations where the feature to allow HTML code for certain users has been disabled. The issue exists due to the plugin not properly filtering or escaping input from the administrator settings in versions up to and including 0.9.89.

Detected in:

Migration, Backup, Staging – WPvivid fixed vulnerable versions: >= * <= 0.9.89

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.