The Joy Of Text Lite WordPress plugin before 2.3.1 does not properly sanitise and escape some parameters before using them in SQL statements accessible to unauthenticated users, leading to unauthenticated SQL injection
Metrics
Affected Vendors & Products
References
History
Thu, 10 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published: 2023-01-02T21:49:32.669Z
Updated: 2025-04-10T18:39:36.591Z
Reserved: 2022-11-21T12:56:38.644Z
Link: CVE-2022-4099
Updated: 2024-08-03T01:27:54.387Z
Status : Modified
Published: 2023-01-02T22:15:16.010
Modified: 2025-04-10T19:15:50.607
Link: CVE-2022-4099
No data.
ReportizFlow