cve/2021/CVE-2021-24140.md
2024-05-25 21:48:12 +02:00

725 B

CVE-2021-24140

Description

Unvalidated input in the Ajax Load More WordPress plugin, versions before 5.3.2, lead to SQL Injection in POST /wp-admin/admin-ajax.php with param repeater=' or sleep(5)#&type=test.

POC

Reference

Github

No PoCs found on GitHub currently.