Security Advisory

CVE-2022-2240

8.8
HIGH

Vulnerability Description

The Request a Quote WordPress plugin through 2.3.7 does not validate uploaded CSV files, allowing unauthenticated users to attach a malicious CSV file to a quote, which could lead to a CSV injection once an admin download and open it
Published Date July 25, 2022
Official Source NIST NVD Advisory