The sirv plugin before 1.3.2 for WordPress has SQL injection via the id parameter.
2019-09-13T13:15:10.777
2024-11-21T02:45:09.077
Modified
[email protected]
CVSSv3.1: 8.8 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4