High severity8.8NVD Advisory· Published Feb 27, 2023· Updated Jun 17, 2026
CVE-2023-0381
CVE-2023-0381
Description
The GigPress WordPress plugin through 2.3.28 does not validate and escape some of its shortcode attributes before using them in SQL statement/s, which could allow any authenticated users, such as subscriber to perform SQL Injection attacks
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WordPress/GigPressdescription
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/39c964fa-6d8d-404d-ac38-72f6f88d203cnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.