The Export any WordPress data to XML/CSV WordPress plugin prior to 1.3.5 does not sanitize the cpt POST parameter when exporting post data before using it in a database query, leading to an SQL injection vulnerability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
soflyy export any wordpress data to xml\\/csv |