Input validation vulnerability in WE – Client Logo Carousel 1.4

A plugin for WordPress called WE – Client Logo Carousel has a security issue in versions 1.4 and below. This is because the plugin does not properly check and protect against harmful code being added to web pages. This allows attackers who have contributor-level access or higher to add their own code to a page, which will then be executed whenever a user visits that page.

Detected in:

WE – Client Logo Carousel open vulnerable versions: >= * <= 1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.