Security Advisory

CVE-2021-25068

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-28 17:21:55
Last updated 2024-08-03 19:56:09
Assigner WPScan
State PUBLISHED

Description

The Sync WooCommerce Product feed to Google Shopping WordPress plugin through 1.2.4 uses the feed_id POST parameter which is not properly sanitized for use in a SQL statement, leading to a SQL injection vulnerability in the admin dashboard