← Back to CVE List

CVE-2022-0771

Published: 2022-05-02T16:15Z
Last Modified: 2024-11-21T06:39Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The SiteSuperCharger WordPress plugin before 5.2.0 does not validate, sanitise and escape various user inputs before using them in SQL statements via AJAX actions (available to both unauthenticated and authenticated users), leading to Unauthenticated SQL Injections > MITRE Terms of Use apply – see LICENSE‑MITRE.txt