Title: Vulnerabilty
Last modified: August 30, 2016

---

# Vulnerabilty

 *  [Steph Wells](https://wordpress.org/support/users/sswells/)
 * (@sswells)
 * [10 years, 6 months ago](https://wordpress.org/support/topic/vulnerabilty/)
 * The strings listed on the Strings Translation page aren’t escaped before outputting.
   Try this:
    pll_register_string( ”, “<script>alert(‘hello’)</script>”, ‘WordPress’);
 * [https://wordpress.org/plugins/polylang/](https://wordpress.org/plugins/polylang/)

Viewing 2 replies - 1 through 2 (of 2 total)

 *  Plugin Author [Chouby](https://wordpress.org/support/users/chouby/)
 * (@chouby)
 * [10 years, 6 months ago](https://wordpress.org/support/topic/vulnerabilty/#post-6808570)
 * Hi!
 * That’s not fun to discuss vulnerabilities in a public forum.
    If you believe 
   that there is a vulnerability, please contact me privately at [https://polylang.wordpress.com/contact/](https://polylang.wordpress.com/contact/)
 *  Thread Starter [Steph Wells](https://wordpress.org/support/users/sswells/)
 * (@sswells)
 * [10 years, 6 months ago](https://wordpress.org/support/topic/vulnerabilty/#post-6808605)
 * Thanks. I couldn’t find any other way of contacting you.

Viewing 2 replies - 1 through 2 (of 2 total)

The topic ‘Vulnerabilty’ is closed to new replies.

 * ![](https://ps.w.org/polylang/assets/icon-256x256.png?rev=3433336)
 * [Polylang](https://wordpress.org/plugins/polylang/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/polylang/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/polylang/)
 * [Active Topics](https://wordpress.org/support/plugin/polylang/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/polylang/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/polylang/reviews/)

 * 2 replies
 * 2 participants
 * Last reply from: [Steph Wells](https://wordpress.org/support/users/sswells/)
 * Last activity: [10 years, 6 months ago](https://wordpress.org/support/topic/vulnerabilty/#post-6808605)
 * Status: not resolved