Input validation vulnerability in TT Custom Post Type Creator 1.0

The TT Custom Post Type Creator plugin for WordPress is not secure and can be easily attacked by hackers. This is because the plugin does not properly clean and protect the information that is entered into the admin settings. As a result, attackers with high-level access can add their own malicious codes to web pages, which will run whenever someone visits those pages. This issue only affects WordPress websites with multiple sites or if the security feature “unfiltered_html” is turned off.

Detected in:

TT Custom Post Type Creator open vulnerable versions: >= * <= 1.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.