Input validation vulnerability in InventoryPress 1.7

The InventoryPress plugin for WordPress has a security vulnerability that could allow malicious users to insert and execute harmful web scripts on pages that people can view. This vulnerability affects versions up to and including version 1.7. It is possible because of a lack of proper input validation and output escaping. To exploit this vulnerability, the malicious user must have “Author” permissions.

Detected in:

InventoryPress fixed vulnerable versions: >= * <= 1.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.