← Back

Adrotate

adrotate

Vendor: Adrotate Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Adrotate Project
1Adrotate
Jun 17, 2026
Mar 7, 2022
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
The AdRotate WordPress plugin before 5.8.22 does not sanitise and escape the adrotate_action before using it in a SQL statement via the adrotate_request_action function available to admins, leading to a SQL injection