Input validation vulnerability in Tiny Carousel Horizontal Slider 8.1

The Tiny Carousel Horizontal Slider plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack can be used by someone with administrator-level access to inject malicious code into pages that can then be seen by anyone who visits that page. In this case, the vulnerability only affects WordPress websites that are multi-site installations, or have disabled a certain security feature known as “unfiltered_html”. Versions of the plugin up to and including 8.1 are vulnerable.

Detected in:

Tiny Carousel Horizontal Slider open vulnerable versions: >= * <= 8.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.