cve/2022/CVE-2022-2460.md
2024-06-18 02:51:15 +02:00

747 B

CVE-2022-2460

Description

The WPDating WordPress plugin before 7.4.0 does not properly escape user input before concatenating it to certain SQL queries, leading to multiple SQL injection vulnerabilities exploitable by unauthenticated users

POC

Reference

Github