Vulnerabilities (CVE)

Filtered by vendor Wpmet Subscribe
Filtered by product Wp Fundraising Donation And Crowdfunding Platform
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0788 1 Wpmet 1 Wp Fundraising Donation And Crowdfunding Platform 2024-02-04 7.5 HIGH 9.8 CRITICAL
The WP Fundraising Donation and Crowdfunding Platform WordPress plugin before 1.5.0 does not sanitise and escape a parameter before using it in a SQL statement via one of it's REST route, leading to an SQL injection exploitable by unauthenticated users