Input validation vulnerability in Product Carousel Slider & Grid Ultimate for WooCommerce 1.8.6

The WooCommerce Product Carousel, Slider & Grid Ultimate plugin for WordPress has a security vulnerability in versions up to and including 1.8.6. This vulnerability allows users with contributor or higher level access to insert malicious JavaScript into the database. This happens because the plugin does not properly sanitize user input when it is put into the database.

Detected in:

Product Carousel Slider & Grid Ultimate for WooCommerce fixed vulnerable versions: >= * <= 1.8.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.