Input validation vulnerability in Cooked – Recipe Plugin 1.7.13

The Cooked plugin for WordPress is not secure for versions up to 1.7.13. It fails to properly filter user input and output, which means an attacker with contributor-level or higher permissions can add malicious scripts to pages. When someone visits an infected page, the malicious code will execute and may cause harm.

Detected in:

Cooked – Recipe Management fixed vulnerable versions:
Cooked – Recipe Plugin open vulnerable versions: >= * <= 1.7.14

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.