The RegistrationMagic WordPress plugin prior to 5.0.1.6 does not escape user input in its rm_chronos_ajax AJAX action before using it in a SQL statement when duplicating tasks in batches, which could lead to a SQL injection issue
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
metagauss registrationmagic |