High severity7.2NVD Advisory· Published Oct 25, 2021· Updated Jun 17, 2026
CVE-2021-24769
CVE-2021-24769
Description
The Permalink Manager Lite WordPress plugin before 2.2.13.1 does not validate and escape the orderby parameter before using it in a SQL statement in the Permalink Manager page, leading to a SQL Injection
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:permalink_manager_lite_project:permalink_manager_lite:*:*:*:*:*:wordpress:*:*Range: <2.2.13.1
- WordPress/Permalink Manager Litedescription
- Range: <2.2.13.1
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/a2f211af-5373-425f-9964-ebbf5efde87bnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.