Vulnerabilities > A3Rev > Page View Count > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-03-07 CVE-2022-0434 SQL Injection vulnerability in A3Rev Page View Count
The Page View Count WordPress plugin before 2.4.15 does not sanitise and escape the post_ids parameter before using it in a SQL statement via a REST endpoint, available to both unauthenticated and authenticated users.
network
low complexity
a3rev CWE-89
critical
9.8