Input validation vulnerability in Social Share Buttons & Analytics Plugin – GetSocial.io 4.3.12

The Social Share Buttons & Analytics Plugin – GetSocial.io plugin for WordPress has a security vulnerability that can be exploited by attackers with administrator-level permissions. This vulnerability exists in all versions of the plugin up to 4.3.12, and allows attackers to inject malicious web scripts into pages on the website. This issue only affects WordPress installations that are set up for multiple sites, or have disabled the “unfiltered_html” option.

Detected in:

Social Share Buttons & Analytics Plugin – GetSocial.io open vulnerable versions: >= * <= 4.3.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.