Vulnerabilities (CVE)

Filtered by vendor Wpscan Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24864 1 Wpscan 1 Wp Cloudy 2024-02-28 6.5 MEDIUM 8.8 HIGH
The WP Cloudy, weather plugin WordPress plugin before 4.4.9 does not escape the post_id parameter before using it in a SQL statement in the admin dashboard, leading to a SQL Injection issue