Input validation vulnerability in Digital Publications by Supsystic 1.6.12

The Digital Publications by Supsystic plugin for WordPress is vulnerable to a security threat called Stored Cross-Site Scripting. This means that any input fields in versions 1.6.12 and lower of the plugin could be used by attackers to insert malicious web scripts into a page that will then be activated whenever someone views the page. This is possible because the plugin does not properly check and filter the input or properly escape the output.

Detected in:

WordPress Flipbook by Supsystic fixed vulnerable versions:
Digital Publications by Supsystic open vulnerable versions: >= * <= 1.6.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.