Input validation vulnerability in Penci Recipe 4.0

The Penci Recipe plugin for WordPress has a security issue that allows hackers to inject harmful web scripts into pages. This can happen on versions 4.0 and below because the plugin does not properly clean up and protect user input. This means that even users with contributor-level access or higher can unknowingly trigger these harmful scripts when they visit a page that has been injected.

Detected in:

Penci Recipe fixed vulnerable versions: >= * <= 4.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.