CVE-2022-0349
07.03.2022, 09:15
The NotificationX WordPress plugin before 2.3.9 does not sanitise and escape the nx_id parameter before using it in a SQL statement, leading to an Unauthenticated Blind SQL Injection
Vendor | Product | Version |
---|---|---|
wpdeveloper | notificationx | 𝑥 < 2.3.9 |
𝑥
= Vulnerable software versions