Input validation vulnerability in FlexIDX Home Search 2.1.2

The FlexIDX Home Search plugin for WordPress has a security issue known as Stored Cross-Site Scripting. This means that certain input and output in the plugin were not properly checked for potential malicious scripts. This vulnerability is present in versions up to and including 2.1.2. As a result, attackers who have contributor-level access or higher can inject their own web scripts into pages, which will run whenever a user visits that page.

Detected in:

FlexIDX Home Search open vulnerable versions: >= * <= 2.1.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.