Input validation vulnerability in WP Responsive header image slider 3.2.1

The WP Responsive Header Image Slider plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting (Stored XSS). This is a type of attack in which attackers can inject malicious code into WordPress pages. This vulnerability exists in all versions of the plugin up to and including 3.2.1, and it is caused by the lack of proper input sanitization and output escaping on user supplied attributes. If an attacker can gain access to the website as a contributor, they can inject web scripts into the pages, which will then be executed whenever a user visits the page.

Detected in:

WP Responsive header image slider open vulnerable versions: >= * <= 3.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.