Input validation vulnerability in TinyMCE Extended Config 0.1.0

The TinyMCE Extended Config plugin for WordPress has a security issue called Reflected Cross-Site Scripting. This means that in versions 0.1.0 and earlier, the plugin does not properly protect against malicious code that can be injected into web pages. This can happen if someone clicks on a harmful link, allowing attackers to run their own scripts on the page.

Detected in:

TinyMCE Extended Config open vulnerable versions: >= * <= 0.1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.