Vulnerabilities > Wpdeveloper > Notificationx > 1.8.3

DATE CVE VULNERABILITY TITLE RISK
2022-03-07 CVE-2022-0349 SQL Injection vulnerability in Wpdeveloper Notificationx
The NotificationX WordPress plugin before 2.3.9 does not sanitise and escape the nx_id parameter before using it in a SQL statement, leading to an Unauthenticated Blind SQL Injection
network
low complexity
wpdeveloper CWE-89
7.5