Input validation vulnerability in Rescue Shortcodes 2.5

The Rescue Shortcodes plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This type of attack allows someone with limited access, such as an editor or above, to inject malicious scripts into pages on your website. These scripts will then run every time someone visits the page, which can be used to steal data or take over other user accounts. To protect your website, make sure you have version 2.5 or above of the plugin installed and that you have adequate input sanitization and output escaping measures in place.

Detected in:

Rescue Shortcodes fixed vulnerable versions: >= * <= 2.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.