Input validation vulnerability in Generate PDF using Contact Form 7 3.5

The Generate PDF using Contact Form 7 plugin for WordPress has a security vulnerability that can be exploited by attackers with administrator-level permissions. This vulnerability lets the attackers inject malicious code (web scripts) into pages that will be executed when someone visits these pages. This vulnerability affects all versions of the plugin up to 3.5 and is caused by the plugin failing to properly sanitize and escape data.

Detected in:

Generate PDF using Contact Form 7 open vulnerable versions: >= * <= 3.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.