CVE-2016-10942
The podlove-podcasting-plugin-for-wordpress plugin before 2.3.16 for WordPress has SQL injection via the insert_id param
The podlove-podcasting-plugin-for-wordpress plugin before 2.3.16 for WordPress has SQL injection via the insert_id parameter exploitable via CSRF.
CRITICAL · CVSS 9.8
EPSS 0.00977
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0