CVE-2021-24949
10.01.2022, 16:15
The "WP Search Filters" widget of The Plus Addons for Elementor - Pro WordPress plugin before 5.0.7 does not sanitise and escape the option parameter before using it in a SQL statement, which could lead to SQL injection
Vendor | Product | Version |
---|---|---|
posimyth | the_plus_addons_for_elementor | 𝑥 < 5.0.7 |
𝑥
= Vulnerable software versions