CVE-2021-24889
29.11.2021, 09:15
The Ninja Forms Contact Form WordPress plugin before 3.6.4 does not escape keys of the fields POST parameter, which could allow high privilege users to perform SQL injections attacks
Vendor | Product | Version |
---|---|---|
ninjaforms | ninja_forms | 𝑥 < 3.6.4 |
𝑥
= Vulnerable software versions