Input validation vulnerability in Accessibility Press 1.0.2

A plugin for WordPress called Accessibility Press has a security issue called Stored Cross-Site Scripting. This happens in versions up to 1.0.2, meaning it affects older versions too. The problem is caused by not properly cleaning up the input and output of the plugin. This allows attackers who have administrator-level access to add their own code to pages. When someone visits those pages, the code will run. This only affects websites with multiple installations or if a certain feature is disabled.

Detected in:

Accessibility Press open vulnerable versions: >= * <= 1.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.