Input validation vulnerability in Internal Links Manager 2.1.0

The Internal Links Manager plugin for WordPress is a tool which helps WordPress users to easily add and manage internal links from within their WordPress admin dashboard. Unfortunately, versions up to, and including, 2.1.0 of this plugin are vulnerable to a security risk called Stored Cross-Site Scripting. This means that if someone with malicious intent were to gain access to the WordPress admin dashboard, they could inject malicious scripts into pages which could then be executed whenever someone visits a page containing the injected script. To prevent this from happening, users of this plugin should ensure they are using the latest version.

Detected in:

Internal Links Manager fixed vulnerable versions: >= * <= 2.1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.