Files
CVEs-PoC/2021/CVE-2021-24140.md
2025-09-29 21:09:30 +02:00

770 B

CVE-2021-24140

Description

Unvalidated input in the Ajax Load More WordPress plugin, versions before 5.3.2, lead to SQL Injection in POST /wp-admin/admin-ajax.php with param repeater=' or sleep(5)#&type=test.

POC

Reference

Github