Input validation vulnerability in WP Not Login Hide (WPNLH) 1.0

The WP Not Login Hide plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting. This type of security flaw can allow attackers with administrative privileges on the affected system to inject malicious web scripts into webpages that will be executed by users who access the pages. This vulnerability only affects WordPress multi-site installations and installations where the security feature called unfiltered_html has been disabled. All versions of this plugin up to and including version 1.0 are affected.

Detected in:

WP Not Login Hide (WPNLH) open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.