Input validation vulnerability in Ditty – Responsive News Tickers, Sliders, and Lists 3.1.51

The Ditty plugin for WordPress, which allows for news tickers, sliders, and lists, has a security vulnerability. This means that hackers can inject harmful code into pages that will run when a user opens the page. The vulnerability exists in all versions of the plugin up to version 3.1.51 and is due to insufficient protection against malicious input. This can be exploited by attackers with author-level permissions or higher.

Detected in:

Ditty – Responsive News Tickers, Sliders, and Lists fixed vulnerable versions: >= * <= 3.1.51

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.