Unrated severityNVD Advisory· Published Apr 4, 2022· Updated Aug 2, 2024
Easy Social Icons < 3.1.4 - Admin+ SQL Injection
CVE-2022-0887
Description
The Easy Social Icons WordPress plugin before 3.1.4 does not sanitize the selected_icons attribute to the cnss_widget before using it in an SQL statement, leading to a SQL injection vulnerability.
Affected products
1- Range: 3.1.4
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/a6c1676d-9dcb-45f6-833a-9545bccd0ad6mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.