RSS   Vulnerabilities for 'Yes\/no chart'   RSS

2021-06-14
 
CVE-2021-24360

CWE-89
 

 
The Yes/No Chart WordPress plugin before 1.0.12 did not sanitise its sid shortcode parameter before using it in a SQL statement, allowing medium privilege users (contributor+) to perform Blind SQL Injection attacks

 


Copyright 2024, cxsecurity.com

 

Back to Top