VYPR

The Sorter

by WordPress

CVEs (1)

  • CVE-2021-24399HigSep 20, 2021
    risk 0.47cvss 7.2epss 0.02

    The check_order function of The Sorter WordPress plugin through 1.0 uses an `area_id` parameter which is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection.