Input validation vulnerability in OAuth Single Sign On – SSO (OAuth Client) 6.22.5

The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is not secure in versions up to and including 6.22.5. Attackers can inject malicious web scripts into this plugin, which will then be executed in the browser of anyone who visits the website. This is dangerous because it means the attacker can take control of the visitor’s browser and potentially access personal information.

Detected in:

OAuth Single Sign On – SSO (OAuth Client) fixed vulnerable versions: >= * <= 6.22.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.