Security Advisory

CVE-2023-2493

7.2
HIGH

Vulnerability Description

The All In One Redirection WordPress plugin before 2.2.0 does not properly sanitise and escape multiple parameters before using them in an SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.
Published Date July 10, 2023
Official Source NIST NVD Advisory