Input validation vulnerability in We’re Open! 1.37

The We’re Open! plugin for WordPress is vulnerable to a type of attack known as Stored Cross-Site Scripting. This type of attack allows malicious users with administrator-level permissions to inject malicious web scripts into pages that will run whenever any user accesses those pages. This vulnerability affects all versions of the We’re Open! plugin up to and including version 1.37 due to the plugin not properly preventing this type of attack.

Detected in:

We’re Open! fixed vulnerable versions: >= * <= 1.37

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.