Input validation vulnerability in Easy Admin Menu 1.3

The Easy Admin Menu plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack can happen when you have versions up to and including 1.3 of the plugin. This type of attack makes it possible for an attacker with administrator access to inject malicious scripts into webpages. When a user views the injected page, the malicious scripts will execute. This type of attack only affects websites that have multiple sites and websites where unfiltered_html has been switched off.

Detected in:

Easy Admin Menu open vulnerable versions: >= * <= 1.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.