Security Advisory

CVE-2021-24827

9.8
CRITICAL

Vulnerability Description

The Asgaros Forum WordPress plugin before 1.15.13 does not validate and escape user input when subscribing to a topic before using it in a SQL statement, leading to an unauthenticated SQL injection issue
Published Date November 8, 2021
Official Source NIST NVD Advisory