Input validation vulnerability in Audio Player with Playlist Ultimate 1.2.2

The Audio Player with Playlist Ultimate plugin for WordPress has a security vulnerability that affects versions up to, and including, 1.2.2. This means that if someone with a contributor-level access and higher uses the plugin, they can inject malicious code into pages that will be executed whenever someone views the page. The vulnerability comes from the fact that the plugin doesn’t properly sanitize input or escape output.

Detected in:

Audio Player with Playlist Ultimate open vulnerable versions: >= * <= 1.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.