Input validation vulnerability in UTM Tracker 1.3.1

The UTM Tracker plugin for WordPress is vulnerable to a type of attack known as Stored Cross-Site Scripting. If you have this plugin installed, you should make sure you have the latest version (1.3.1 or above). This type of attack can only be done by someone who is an administrator on your WordPress site and who has access to certain settings. If they are able to get access to these settings, they can inject malicious scripts into the pages of your website that will execute whenever someone visits the page. This type of attack is more likely to happen on multi-site installations or on installations where the unfiltered_html feature has been disabled.

Detected in:

UTM Tracker open vulnerable versions: >= * <= 1.3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.