8.8
CVSSv3

CVE-2023-5645

Published: 26/12/2023 Updated: 04/01/2024
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The WP Mail Log WordPress plugin prior to 1.1.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as Contributor.

Vulnerable Product Search on Vulmon Subscribe to Product

wpvibes wp mail log