CVE-2022-1023

Publication date

2022-04-11 14:41:09

Family

WPScan

State

PUBLISHED

Description

The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which could allow SQL injection attacks to be performed by imported a malicious podcast file