Input validation vulnerability in Vision Interactive For WordPress 1.5.1

The Vision Interactive For WordPress plugin, up to version 1.5.1, is vulnerable to a type of malicious attack called Reflected Cross-Site Scripting. This type of attack happens when a user is tricked into clicking a link which contains malicious code. If this link is clicked, the malicious code is then executed and can cause harm to the user. This vulnerability could be avoided if the plugin had implemented better measures to filter out malicious code and protect users.

Detected in:

Vision – Image Map Builder fixed vulnerable versions:
Vision – Interactive Image Map Builder fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.