Input validation vulnerability in WP-Matomo Integration (WP-Piwik) 1.0.27

The WP-Piwik plugin for WordPress is susceptible to a security issue known as Stored Cross-Site Scripting. This security issue affects versions 1.0.27 and below of the plugin. This means that users who have administrative access or higher can inject malicious web scripts into pages, which will execute when any user visits the page. This security issue only affects multi-site installations or installations where the unfiltered_html feature has been disabled.

Detected in:

Connect Matomo (WP-Matomo, WP-Piwik) fixed vulnerable versions:
WP-Matomo Integration (WP-Piwik) fixed vulnerable versions: >= * <= 1.0.27

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.