You're viewing a limited, public preview. Log in for full access.
WP Directory Kit < 1.5.5 - Unauthenticated SQL Injection via 'field_search' Parameter
No AI analysis yet.
The WP Directory Kit WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.
7.4th percentile
This link opens an external site that isn't part of the platform.