Input validation vulnerability in WP Sticky Social 1.0.1

The WP Sticky Social plugin for WordPress has a security vulnerability that affects versions up to 1.0.1. This vulnerability allows anyone who can trick a site administrator to click on a link to modify the plugin’s settings and inject malicious web scripts. This is because the plugin does not properly validate requests, meaning it does not check if the request is coming from the administrator.

Detected in:

WP Sticky Social fixed vulnerable versions: >= 1.0.1 <= 1.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.