← Back to CVE List

CVE-2017-14723

Published: 2017-09-23T20:29Z
Last Modified: 2024-11-21T03:13Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Before version 4.8.2, WordPress mishandled % characters and additional placeholder values in $wpdb->prepare, and thus did not properly address the possibility of plugins and themes enabling SQL injection attacks. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt