Input validation vulnerability in Bing Site Verification plugin using Meta Tag 1.0

The Binge Site Verification using Meta Tag plugin for WordPress is not secure in versions up to 1.0. Attackers with administrator-level permissions can inject malicious web scripts into pages that will execute when a user visits them. This only applies to multi-site installations and installations where unfiltered_html has been turned off. The vulnerability is caused by a lack of proper input sanitization and output escaping.

Detected in:

Bing Site Verification plugin using Meta Tag open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.