Input validation vulnerability in Task Manager Pro – Task Management Plugin For WordPress 1.3.1

The Task Manager Pro plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack can happen in versions up to, and including, version 1.3.1 of the plugin. The vulnerability is caused by the plugin not properly checking the input it receives and preventing malicious code from being executed. Attackers, who have subscriber-level permissions or higher, can inject web scripts into pages that will be executed when a user visits the page.

Detected in:

Task Manager Pro - Task Management Plugin For Wordpress open vulnerable versions: >= * <= 1.3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.