Input validation vulnerability in Certifica WP 3.1

The Certifica WP plugin for WordPress has a security issue where attackers can insert harmful code through the ‘evento’ parameter. This can be done by someone with Contributor access or higher, and can cause the code to run whenever a user visits the affected page.

Detected in:

Certifica WP open vulnerable versions: >= * <= 3.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.