Input validation vulnerability in Velvet *

The Velvet Theme for WordPress is prone to a security vulnerability that could allow attackers to inject malicious web scripts into pages that are seen by users. This happens when a user clicks on a link that the attacker has sent, and the link contains malicious code. This vulnerability is present in all versions of the Velvet Theme for WordPress due to the lack of proper input sanitization and output escaping.

Detected in:

Velvet fixed vulnerable versions: >= * <= *

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.