Input validation vulnerability in SEO by 10Web 1.2.9

The SEO by 10Web plugin for WordPress is vulnerable to a security issue called Reflected Cross-Site Scripting. This vulnerability exists in all versions of the plugin up to version 1.2.9, and it is caused by not properly checking the data that is sent to the plugin, and not properly preventing malicious code from running. This means that attackers could potentially inject malicious code into pages that are viewed by users, which would run if the user were to click on a link.

Detected in:

SEO by 10Web open vulnerable versions: >= * <= 1.2.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.