Description
The Relevanssi WordPress plugin before 4.26.0, Relevanssi Premium WordPress plugin before 2.29.0 do not sanitize and escape a parameter before using it in a SQL statement, allowing contributor and above roles to perform SQL injection attacks
Problem types
Product status
Any version before 4.26.0
Any version before 2.29.0
Credits
Drew Webber (mcdruid)
WPScan
References
wpscan.com/...rability/bd8e27c7-8f97-4313-b16e-50ac6f0676f5/
wpscan.com/...rability/bd8e27c7-8f97-4313-b16e-50ac6f0676f5/