Input validation vulnerability in Watu Quiz 2.5.0.1

The Watu Quiz plugin for WordPress is vulnerable to a type of security breach known as Stored Cross-Site Scripting. This affects versions up to and including 2.5.0.1. It is possible for attackers, with or without authentication (depending on quiz settings), to inject malicious code into pages which will be executed when any user visits the page. This is due to a lack of proper input sanitization and output escaping.

Detected in:

Watu Quiz fixed vulnerable versions: >= * <= 2.5.0.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.