Input validation vulnerability in Easy Table of Contents 2.0.67.1

The Easy Table of Contents plugin for WordPress has a security vulnerability that allows hackers to insert harmful code into a page. This can happen on any version up to 2.0.67.1 because the plugin does not properly filter and sanitize input and output. This means that attackers with editor privileges or higher can add dangerous code to a page, which will run whenever a user visits that page. This only affects websites with multiple sub-sites or those that have disabled the “unfiltered_html” setting.

Detected in:

Easy Table of Contents fixed vulnerable versions: >= * <= 2.0.67.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.