Input validation vulnerability in Button 1.1.28

The Button plugin used in WordPress has a security issue where it can be attacked by injecting a harmful code through untrusted input. This can only be done by someone with contributor-level access or higher. If there is another plugin or theme installed on the website, it could make the attack more severe by allowing the attacker to delete files, access sensitive information, or run code.

Detected in:

Button open vulnerable versions: >= * <= 1.1.27

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.