Input validation vulnerability in Community by PeepSo – Social Network, Membership, Registration, User Profiles, Premium – Mobile App 6.4.6.1

A plugin called The Community by PeepSo, which is used for social networking, membership, registration, user profiles, and a mobile app on WordPress, has a security issue. This vulnerability is caused by not properly filtering and protecting against malicious code in URLs that are used in posts, comments, and profiles. This means that someone with at least Subscriber-level access can insert harmful scripts into pages that will run whenever a user views that page.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.