cve/2023/CVE-2023-2114.md
2024-05-25 21:48:12 +02:00

822 B

CVE-2023-2114

Description

The NEX-Forms WordPress plugin before 8.4 does not properly escape the table parameter, which is populated with user input, before concatenating it to an SQL query.

POC

Reference

No PoCs from references.

Github