← Back to CVE List
CVE-2021-24394
An id GET parameter of the Easy Testimonial Manager WordPress plugin through 1.2.0 is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt