Vulnerabilities (CVE)

Filtered by vendor Ayecode Subscribe
Filtered by product Location Manager
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24361 1 Ayecode 1 Location Manager 2024-02-28 7.5 HIGH 9.8 CRITICAL
In the Location Manager WordPress plugin before 2.1.0.10, the AJAX action gd_popular_location_list did not properly sanitise or validate some of its POST parameters, which are then used in a SQL statement, leading to unauthenticated SQL Injection issues.