Input validation vulnerability in Wp-Adv-Quiz 1.0.2

The Wp-Adv-Quiz plugin for WordPress has a security issue that allows attackers to inject malicious code into quiz questions and messages. This can happen on versions 1.0.2 and below because the plugin does not properly clean up user input. As a result, attackers with high levels of access can make these injected pages execute harmful web scripts when users visit them. This only affects certain types of WordPress installations.

Detected in:

Wp-Adv-Quiz fixed vulnerable versions: >= * <= 1.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.