Input validation vulnerability in Ditty – Responsive News Tickers, Sliders, and Lists 3.1.44

The Ditty plugin for WordPress, which helps with displaying news tickers, sliders, and lists, has a security issue. This means that hackers can inject harmful code into the plugin’s Tiny MCE block, which can cause problems for users who view the page. This vulnerability exists in all versions of the plugin up to version 3.1.44, and can only be exploited by users with contributor-level access or higher.

Detected in:

Ditty – Responsive News Tickers, Sliders, and Lists fixed vulnerable versions: >= * <= 3.1.44

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.