Files
CVEs-PoC/2022/CVE-2022-1800.md
T
2025-09-29 21:09:30 +02:00

832 B

CVE-2022-1800

Description

The Export any WordPress data to XML/CSV WordPress plugin before 1.3.5 does not sanitize the cpt POST parameter when exporting post data before using it in a database query, leading to an SQL injection vulnerability.

POC

Reference

Github