Input validation vulnerability in Freshdesk (official) 2.3.4

The Freshdesk (official) plugin for WordPress has a security vulnerability in all versions up to and including 2.3.4. The problem is that the plugin does not properly check the website address that it redirects users to. This means that hackers who are not logged in can redirect users to dangerous websites if they are able to trick them into clicking on something.

Detected in:

Freshdesk (official) open vulnerable versions: >= * <= 2.3.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.