Login Widget With Shortcode <= 6.1.2 is vulnerable to Unvalidated Redirect
Security risk: redirect. The vulnerability allows an attacker to redirect victims to arbitrary URL. Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information.
@support is there any update planned in the near future for this issue.
Hi Supoort
Can you kindly share an ETA for the latest plugin updates with the above fix. Its been two weeks but still the latest version is not available.
Thanks
Plugin is showing vulnerability risk:
Security risk: xss. Data from an attacker could be interpreted as code by site visitors’ web browsers. The ability to run code in another site visitors’ browser can be abused to steal information, or modify site configuration.
Can there be an update available to this issue. Using version 2.4.18 in my site.
Thanks