CVE-2023-0631
EUVD-2023-1266520.03.2023, 16:15
The Paid Memberships Pro WordPress plugin before 2.9.12 does not prevent subscribers from rendering shortcodes that concatenate attributes directly into an SQL query.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| strangerstudios | paid_memberships_pro | 𝑥 < 2.9.12 |
𝑥
= Vulnerable software versions