Input validation vulnerability in Leaflet Map 3.3.0

The Leaflet Map plugin for WordPress, up to version 3.3.0, has an issue that allows malicious users with contributor-level permissions or higher to inject web scripts into pages. This web scripts will execute when any user views an injected page, potentially allowing the malicious user to gain access to confidential information. To prevent this issue, it is important to update the plugin to the latest version.

Detected in:

Leaflet Map fixed vulnerable versions: >= * <= 3.3.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.