Input validation vulnerability in Contact Form 7 – Dynamic Text Extension 2.0.3

The Contact Form 7 Dynamic Text Extension plugin for WordPress is not secure in versions before 2.0.3. Attackers can inject malicious code to web pages if they can convince a user to take an action, like clicking a link. This malicious code would then be executed, allowing the attacker to gain access to the website. To prevent this, make sure that you are using version 2.0.3 or higher.

Detected in:

Contact Form 7 – Dynamic Text Extension fixed vulnerable versions: >= * < 2.0.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.