Input validation vulnerability in Leyka 3.31.9

The Leyka plugin for WordPress has a security issue called Stored Cross-Site Scripting. This problem affects versions 3.31.9 and below because the plugin does not properly clean up user input or protect against harmful scripts. This means that attackers who are logged into the website with contributor-level access or higher can add their own harmful scripts to pages, which will be executed whenever someone visits that page.

Detected in:

Leyka open vulnerable versions: >= * <= 3.31.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.