Vulnerabilities > A3Rev > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-03-07 | CVE-2022-0434 | SQL Injection vulnerability in A3Rev Page View Count The Page View Count WordPress plugin before 2.4.15 does not sanitise and escape the post_ids parameter before using it in a SQL statement via a REST endpoint, available to both unauthenticated and authenticated users. | 9.8 |