Filtered by vendor Ayecode Subscriptions
Filtered by product Location Manager Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-24361 1 Ayecode 1 Location Manager 2021-06-24 9.8 Critical
In the Location Manager WordPress plugin before 2.1.0.10, the AJAX action gd_popular_location_list did not properly sanitise or validate some of its POST parameters, which are then used in a SQL statement, leading to unauthenticated SQL Injection issues.