Input validation vulnerability in Use Any Font | Custom Font Uploader 6.2.7

The Use Any Font | Custom Font Uploader plugin for WordPress is vulnerable to a security issue called Stored Cross-Site Scripting. This is an issue that can allow attackers to inject dangerous web scripts into pages that can then run when any user visits them. This problem exists in versions of the plugin that are up to and including version 6.2.7 due to the plugin not properly filtering user input and not properly protecting the output.

Detected in:

Use Any Font | Custom Font Uploader fixed vulnerable versions: >= * <= 6.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.