← Back to CVE List

CVE-2021-25109

Published: 2022-02-14T12:15Z
Last Modified: 2024-11-21T05:54Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The Futurio Extra WordPress plugin before 1.6.3 is affected by a SQL Injection vulnerability that could be used by high privilege users to extract data from the database as well as used to perform Cross-Site Scripting (XSS) against logged in admins by making send open a malicious link. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt