Vulnerability CVE-2023-0630


Published: 2023-03-20

Description:
The Slimstat Analytics WordPress plugin before 4.9.3.3 does not prevent subscribers from rendering shortcodes that concatenates attributes directly into an SQL query.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://wpscan.com/vulnerability/b82bdd02-b699-4527-86cc-d60b56ab0c55

Copyright 2026, cxsecurity.com

 

Back to Top