Loading HuntDB...

GHSA-vjjf-x2fh-7rqj

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

The Viral Signup WordPress plugin through 2.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

Related CVEs

Key Information

GHSA ID
GHSA-vjjf-x2fh-7rqj
Published
September 4, 2024 6:30 AM
Last Modified
September 4, 2024 6:30 PM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 15, 2025 6:32 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.