Input validation vulnerability in Jock on air now 5.6.2

The Jock on air now plugin for WordPress is not secure in versions up to and including 5.6.2. This means that if a hacker is able to gain access to the plugin settings or the AJAX action ‘show-time-curd’, they can inject web scripts into pages that will run when these pages are visited. This could cause serious problems for the user.

Detected in:

Jock on air now fixed vulnerable versions: >= * <= 5.6.2
Jock On Air Now (JOAN) fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.