The Custom Banners plugin for WordPress has a security issue that allows hackers to inject harmful code into web pages. This can happen if a user clicks on a link that tricks them into performing an action. This vulnerability is present in all versions of the plugin up to 3.3. If you have this plugin, it is recommended to update to the latest version to protect your website.