Input validation vulnerability in WWM Social Share On Image Hover 2.2

The WWM Social Share On Image Hover plugin for WordPress is vulnerable to a type of attack called Cross-Site Scripting. This type of attack happens when attackers with administrator-level access inject malicious code into web pages. When any user visits the page, the malicious code can be executed. This type of attack only affects multi-site installations and installations where extra security measures have been put in place to prevent it. Versions of the plugin up to and including 2.2 are vulnerable to this attack.

Detected in:

WWM Social Share On Image Hover open vulnerable versions: >= * <= 2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.