Input validation vulnerability in JSM Screenshot Machine Shortcode 2.3.0

The JSM Screenshot Machine Shortcode plugin for WordPress has a security issue that can allow hackers to insert harmful code on a website. This can happen through the plugin’s ‘ssm’ shortcode feature, which is vulnerable in all versions up to 2.3.0. The problem is caused by not properly filtering and protecting user input, which means that anyone with contributor-level access or higher can potentially inject malicious code into pages. This code will then be executed whenever a user visits the affected page.

Detected in:

JSM Screenshot Machine Shortcode fixed vulnerable versions: >= * <= 2.3.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.