Input validation vulnerability in FOX – Currency Switcher Professional for WooCommerce 1.3.9.2

The WOOCS plugin for WordPress is not secure in versions up to 1.3.9.2. Attackers with contributor-level permissions or higher can inject malicious web scripts into pages which can be executed when users access them. These scripts are injected due to the lack of input sanitization and output escaping.

Detected in:

FOX – Currency Switcher Professional for WooCommerce fixed vulnerable versions: >= * <= 1.3.9.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.