cve/2021/CVE-2021-24629.md
2025-09-29 21:09:30 +02:00

836 B

CVE-2021-24629

Description

The Post Content XMLRPC WordPress plugin through 1.0 does not sanitise or escape multiple GET/POST parameters before using them in SQL statements in the admin dashboard, leading to an authenticated SQL Injections

POC

Reference

Github