Input validation vulnerability in Image Source Control Lite – Show Image Credits and Captions 2.28.0

A plugin for WordPress called “Image Source Control Lite – Show Image Credits and Captions” has a problem that could make it vulnerable to a certain type of attack. This attack, known as Reflected Cross-Site Scripting, can happen because the plugin doesn’t properly clean up or protect the information being used. This means that someone who isn’t logged in or authorized could potentially add harmful code to a page that would run if a user clicked on a link.

Detected in:

Image Source Control Lite – Show Image Credits and Captions fixed vulnerable versions: >= * <= 2.28.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.