Input validation vulnerability in Shortcode for Current Date 2.1.6

The Shortcode For Current Date plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting. This means that attackers can inject malicious code into certain parts of the plugin and if someone visits the page with this malicious code, it will run. This problem affects all versions of the plugin up to and including 2.1.6 and is caused by the plugin not properly sanitizing and escaping certain parts of the code.

Detected in:

Shortcode for Current Date fixed vulnerable versions: >= * <= 2.1.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.