Security Advisory

CVE-2021-24748

8.8
HIGH

Vulnerability Description

The Email Before Download WordPress plugin before 6.8 does not properly validate and escape the order and orderby GET parameters before using them in SQL statements, leading to authenticated SQL injection issues
Published Date November 29, 2021
Official Source NIST NVD Advisory