CVE-2023-1730
02.05.2023, 08:15
The SupportCandy WordPress plugin before 3.1.5 does not validate and escape user input before using it in an SQL statement, which could allow unauthenticated attackers to perform SQL injection attacks
| Vendor | Product | Version |
|---|---|---|
| supportcandy | supportcandy | 𝑥 < 3.1.5 |
𝑥
= Vulnerable software versions