Input validation vulnerability in Qwizcards | online quizzes and flashcards 3.9.4

The Qwizcards plugin for WordPress, which allows users to create online quizzes and flashcards, has a security vulnerability. This vulnerability, known as Reflected Cross-Site Scripting, can be exploited through the ‘_stylesheet’ parameter. This affects all versions of the plugin up to 3.9.4. The issue is caused by not properly filtering and protecting user input, which means that attackers who are not logged in can insert harmful web scripts into pages. They can do this by deceiving a user into clicking on a link.

Detected in:

Qwizcards | online quizzes and flashcards open vulnerable versions: >= * <= 3.94

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.