Input validation vulnerability in Import any XML or CSV File to WordPress 3.6.6

The Import any XML or CSV File to WordPress plugin for WordPress is vulnerable to a type of security issue known as Reflected Cross-Site Scripting. This means that if a user is tricked into clicking a link, it is possible for unauthenticated attackers to inject web scripts into pages. This security issue affects versions of the plugin up to and including 3.6.6 and is due to the lack of appropriate escaping on the URL.

Detected in:

Import any XML or CSV File to WordPress fixed vulnerable versions: >= * <= 3.6.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.