Input validation vulnerability in Flexible Map 1.18.0

The Flexible Map plugin used in WordPress has a security issue called Stored Cross-Site Scripting. This happens when the plugin’s Flexible Maps shortcode is used and allows attackers to inject harmful web scripts on pages. This can happen on any version of the plugin up to and including 1.18.0. Only users with contributor-level access or higher can do this.

Detected in:

Flexible Map fixed vulnerable versions: >= * <= 1.18.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.