Input validation vulnerability in azurecurve BBCode 2.0.4

The BBCode plugin for WordPress called azurecurve has a security issue where hackers can manipulate the website’s code through a specific shortcode called ‘url’. This can happen in all versions of the plugin, up to version 2.0.4, because the plugin does not properly clean or protect user input. This means that hackers with a certain level of access can add harmful code to pages that will run when someone visits that page.

Detected in:

azurecurve BBCode open vulnerable versions: >= * <= 2.0.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.