HomeDefault status
unaffected
Any version before 3.2.8.2
affected
Description
The Pods WordPress plugin before 3.2.8.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks
Problem types
Product status
Any version before 3.2.8.2
Credits
Dmitrii Ignatyev
WPScan
References
wpscan.com/...rability/c170fb45-7ed5-40ef-99f6-8da035a23d89/
wpscan.com/...rability/c170fb45-7ed5-40ef-99f6-8da035a23d89/