Input validation vulnerability in Ocean Extra 2.2.8

The Ocean Extra plugin for WordPress has a security issue called Stored Cross-Site Scripting. This happens when the Flickr widget is used in versions 2.2.8 and below because it doesn’t properly clean or protect the information provided by users. This means that attackers who have contributor-level access or higher can insert dangerous web scripts into pages that will run when someone visits the page.

Detected in:

Ocean Extra fixed vulnerable versions: >= * <= 2.2.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.