Access violation vulnerability in SCSS Happy Compiler – Compile SCSS to CSS & Automatic Enqueue 1.3.10

The SCSS Happy Compiler is a tool used to convert SCSS code to CSS and automatically add it to WordPress websites. It has a security vulnerability called Stored Cross-Site Scripting, which means that attackers with certain access can add harmful code to the website. This affects all versions up to 1.3.10, and attackers need to have at least Subscriber-level access to exploit it.

Detected in:

SCSS Happy Compiler – Compile SCSS to CSS & Automatic Enqueue open vulnerable versions: >= * <= 1.3.10

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.