Input validation vulnerability in BestWebSoft's Twitter 1.3.2

The BestWebSoft’s Twitter plugin for WordPress is vulnerable to malicious code being stored by an administrator with special permissions. This malicious code is known as Stored Cross-Site Scripting, and can be used to inject a web script into pages. This code will be executed whenever a user visits the page. This vulnerability only affects websites running multiple sites or with a security setting called unfiltered_html disabled.

Detected in:

BestWebSoft's Twitter fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.