cleantalk
Vulnerabilities and Security Researches

JoomSport – for Sports: Team & League, Football, Hockey & more, CVE-2022-4050

CVE, Research URL

CVE-2022-4050

Published on
Dec 19, 2022
Research Description
The JoomSport WordPress plugin before 5.2.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users
Affected versions
max 5.2.8.
Status
vulnerable