← Back to CVE List

CVE-2022-1194

Published: 2022-09-16T09:15Z
Last Modified: 2024-11-21T06:40Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The Mobile Events Manager WordPress plugin before 1.4.8 does not properly escape the Enquiry source field when exporting events, or the Paid for field when exporting transactions as CSV, leading to a CSV injection vulnerability. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt