Input validation vulnerability in Scylla lite 1.8.3

The Scylla lite theme for WordPress has a security issue that allows hackers to insert harmful code into a website. This can happen through the ‘url’ parameter in the theme’s Button feature, which is not properly protected against malicious code. This vulnerability exists in all versions of the theme up to version 1.8.3, and it can be exploited by attackers who have Contributor-level access or higher. This means that they can insert code that will run whenever someone visits a page on the affected website.

Detected in:

Scylla lite open vulnerable versions: >= * <= 1.8.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.