Input validation vulnerability in Under Construction / Maintenance Mode from Acurax 2.6

The Acurax WordPress Under Construction / Maintenance Mode plugin is vulnerable to a security risk called Cross-Site Scripting. This vulnerability could allow someone without permission to put malicious code into webpages that will be executed when someone visits those pages. The vulnerability exists in versions of the plugin up to version 2.6 and is caused by a lack of proper input sanitization and output escaping.

Detected in:

Under Construction / Maintenance Mode from Acurax open vulnerable versions: >= * <= 2.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.