The Easy Testimonials plugin for WordPress has a security issue where malicious code can be inserted into webpages without being detected. This can be done by anyone with contributor-level or higher permissions, and can potentially harm anyone who visits the affected pages.