WpStickyBar <= 2.1.0 - SQL Injection
The plugin does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection
CVSS9.8EPSS 76.8%
暂无产品描述。
共找到 1 条公开漏洞记录
The plugin does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection