Input validation vulnerability in Kindeditor For WordPress 1.3.7

The Kindeditor For WordPress plugin for WordPress is vulnerable to a security issue called Reflected Cross-Site Scripting. This means that if someone can get a user to do something like click on a link, they can inject malicious code into the page. The vulnerability affects versions of the plugin up to and including 1.3.7, because it does not properly check for unsafe input or protect against malicious code.

Detected in:

Kindeditor For WordPress fixed vulnerable versions: >= * <= 1.3.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.