Input validation vulnerability in Asynchronous Javascript 1.3.5

The Asynchronous Javascript plugin used in WordPress has a security vulnerability that allows “Reflected Cross-Site Scripting.” This means that in versions 1.3.5 and below, the plugin does not properly clean up user input or protect against malicious code being injected into web pages. This could allow hackers to execute harmful scripts if they can trick a user into clicking on a link.

Detected in:

Asynchronous Javascript open vulnerable versions: >= * <= 1.3.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.