Input validation vulnerability in Popup Box – Best WordPress Popup Plugin 3.8.7

The Popup Box – Best WordPress Popup Plugin is vulnerable to a type of attack called Stored Cross-Site Scripting for all versions up to 3.8.7. This type of attack allows people with administrator access to inject malicious code into pages of the Plugin. This code would then be executed when any user visits those pages. This vulnerability only affects multi-site installations and installations with disabled unfiltered_html.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.