← Back

Badgos

badgos

Vendor: Badgeos • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Badgeos
1Badgos
Nov 21, 2024
Sep 19, 2022
N/A· v4
8.8 HIGH· v3
N/A· v2
The BadgeOS WordPress plugin before 3.7.1.3 does not sanitise and escape parameters before using them in SQL statements via AJAX actions available to any authenticated users, leading to SQL Injections