Input validation vulnerability in Button Generator – easily Button Builder 2.3.4

The Button Generator plugin for WordPress is vulnerable to a type of attack called Reflected Cross-Site Scripting. This vulnerability affects versions of the plugin up to and including 2.3.4. Attackers can use this vulnerability to inject malicious web scripts into websites. These scripts could be automatically executed if a user clicks on a link that contains the malicious code. To protect against this type of attack, it is important to ensure that all input and output of the plugin is properly sanitized and escaped.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.