← back
CVE-2023-2493

All In One Redirection < 2.2.0 - Admin+ SQLi

EPSS 0.8%
The All In One Redirection WordPress plugin before 2.2.0 does not properly sanitise and escape multiple parameters before using them in an SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →