CVE-2023-23492

Publication date

2023-01-20 00:00:00

Family

tenable

State

PUBLISHED

Description

The Login with Phone Number WordPress Plugin, version < 1.4.2, is affected by an authenticated SQL injection vulnerability in the ID parameter of its lwp_forgot_password action.