CVE-2021-25109
14.02.2022, 12:15
The Futurio Extra WordPress plugin before 1.6.3 is affected by a SQL Injection vulnerability that could be used by high privilege users to extract data from the database as well as used to perform Cross-Site Scripting (XSS) against logged in admins by making send open a malicious link.
Vendor | Product | Version |
---|---|---|
futuriowp | futurio_extra | 𝑥 < 1.6.3 |
𝑥
= Vulnerable software versions