The My wpdb WordPress plugin prior to 2.5 is missing CSRF check when running SQL queries, which could allow malicious user to make a logged in admin run arbitrary SQL query via a CSRF attack
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
my wpdb project my wpdb |