Input validation vulnerability in Custom More Link Complete 1.4.1

The Custom More Link Complete plugin for WordPress is not secure in versions up to and including 1.4.1. This could allow someone with administrator-level access to put malicious code on website pages. This only affects multi-site installations and installations where a safety feature called “unfiltered_html” has been turned off.

Detected in:

Custom More Link Complete open vulnerable versions: >= * <= 1.4.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.