CVE-2022-2958 Information
Sep 20, 2022
cve
Description
The BadgeOS WordPress plugin before 3.7.1.3 does not sanitise and escape parameters before using them in SQL statements via AJAX actions available to any authenticated users leading to SQL Injections
Reference
https://wpscan.com/vulnerability/8743534f-8ebd-496a-99bc-5052a8bac86a
Share on: