WordPress Vulnerabilities
WordPress < 5.8.3 - SQL Injection via WP_Query
Description
Due to improper sanitization in WP_Query, there can be cases where SQL injection is possible through plugins or themes that use it in a certain way.
Affects WordPress
References
Classification
Type
SQLI
OWASP top 10
CWE
CVSS
Miscellaneous
Original Researcher
Ngocnb and Khuyenn from GiaoHangTietKiem JSC
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2022-01-06 (about 4 years ago)
Added
2022-01-06 (about 4 years ago)
Last Updated
2022-04-12 (about 3 years ago)