Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j9mx-2988-q3xf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Stock in & out WordPress plugin through 1.0.4 lacks proper sanitization before passing variables to an SQL request, making it vulnerable to SQL Injection attacks. Users with a role of contributor or higher can exploit this vulnerability.

The Stock in & out WordPress plugin through 1.0.4 lacks proper sanitization before passing variables to an SQL request, making it vulnerable to SQL Injection attacks. Users with a role of contributor or higher can exploit this vulnerability.

EPSS

Процентиль: 67%
0.00532
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 8.8
nvd
больше 4 лет назад

The Stock in & out WordPress plugin through 1.0.4 lacks proper sanitization before passing variables to an SQL request, making it vulnerable to SQL Injection attacks. Users with a role of contributor or higher can exploit this vulnerability.

EPSS

Процентиль: 67%
0.00532
Низкий

Дефекты

CWE-89