{ "id": "CVE-2024-5765", "sourceIdentifier": "contact@wpscan.com", "published": "2024-07-30T06:15:02.823", "lastModified": "2024-07-30T06:15:02.823", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "The WpStickyBar WordPress plugin through 2.1.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection" } ], "metrics": {}, "references": [ { "url": "https://wpscan.com/vulnerability/0b73f84c-611e-4681-b362-35e721478ba4/", "source": "contact@wpscan.com" } ] }