Vulnerability CVE-2022-1472


Published: 2022-06-20

Description:
The Better Find and Replace WordPress plugin before 1.3.6 does not properly sanitise, validate and escape various parameters before using them in an SQL statement, leading to an SQL Injection

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://wpscan.com/vulnerability/9c608b14-dc5e-469e-b97a-84696fae804c

Copyright 2026, cxsecurity.com

 

Back to Top