Blog2Social: Social Media Auto Post & Scheduler, CVE-2021-24137
- CVE, Research URL
- Published on
- Mar 18, 2021
- Research Description
- Unvalidated input in the Blog2Social WordPress plugin, versions before 6.3.1, lead to SQL Injection in the Re-Share Posts feature, allowing authenticated users to inject arbitrary SQL commands.
- Affected versions
-
Min -, max 6.3.1.
- Status
-
vulnerable