Input validation vulnerability in Reviews Widget for Google, Yelp & Recommendations 2.5

1 by adding limited input sanitization, but it can still be bypassed by using certain special characters. The plugin called “Social Reviews & Recommendations” for WordPress has a security issue that allows attackers to inject harmful scripts into web pages. This can happen when a user visits a page that has been targeted by the attacker. The problem affects all versions of the plugin up to version 2.5.1. Some steps have been taken to fix the issue in version 2.5.1, but it can still be bypassed by using specific characters.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.