Unrated severityNVD Advisory· Published May 27, 2024· Updated Mar 25, 2025
KKProgressbar2 Free <= 1.1.4.2 - Admin+ SQL Injection
CVE-2024-4533
Description
The KKProgressbar2 Free WordPress plugin through 1.1.4.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admin users to perform SQL injection attacks
Affected products
2- Range: <=1.1.4.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/c3406236-aaee-480a-8931-79c867252f11/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.