CVE-2022-2460

Publication date

2022-08-08 13:51:32

Family

WPScan

State

PUBLISHED

Description

The WPDating WordPress plugin before 7.4.0 does not properly escape user input before concatenating it to certain SQL queries, leading to multiple SQL injection vulnerabilities exploitable by unauthenticated users