CVE-2021-25068

Publication date

2022-03-28 17:21:55

Family

WPScan

State

PUBLISHED

Description

The Sync WooCommerce Product feed to Google Shopping WordPress plugin through 1.2.4 uses the feed_id POST parameter which is not properly sanitized for use in a SQL statement, leading to a SQL injection vulnerability in the admin dashboard