GHSA-63pp-h478-q8p4MediumCVSS 6.8
The Testimonials by BestWebSoft WordPress plugin through 1.0.8 does not sanitise and escape a...
🔗 CVE IDs covered (1)
📋 Description
The Testimonials by BestWebSoft WordPress plugin through 1.0.8 does not sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated attackers to append additional SQL to the query.