CVE-2021-24125
18.03.2021, 15:15
Unvalidated input in the Contact Form Submissions WordPress plugin before 1.7.1, could lead to SQL injection in the wpcf7_contact_form GET parameter when submitting a filter request as a high privilege user (admin+)
Vendor | Product | Version |
---|---|---|
contact_form_submissions_project | contact_form_submissions | 𝑥 < 1.7.1 |
𝑥
= Vulnerable software versions