Input validation vulnerability in FAQ Builder AYS 1.7.3

The FAQ Builder AYS plugin for WordPress is at risk of a security issue called Stored Cross-Site Scripting. This can happen in versions up to 1.7.3 because the plugin does not properly protect against harmful code being added to the website. This can allow someone with high-level access to the website to add their own code, which can then be executed whenever a user visits that page. This mainly affects websites with multiple pages and those that have disabled a security setting called unfiltered_html.

Detected in:

FAQ Builder AYS fixed vulnerable versions: >= * <= 1.7.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.