Files
CVEs-PoC/2021/CVE-2021-24865.md
2025-09-29 21:09:30 +02:00

761 B

CVE-2021-24865

Description

The Advanced Custom Fields: Extended WordPress plugin before 0.8.8.7 does not validate the order and orderby parameters before using them in a SQL statement, leading to a SQL Injection issue

POC

Reference

Github