First published: Fri Aug 16 2019(Updated: )
The easy-digital-downloads plugin before 2.3.3 for WordPress has SQL injection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sandhillsdev Easy Digital Downloads | <2.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-9324 is a vulnerability in the easy-digital-downloads plugin for WordPress that allows SQL injection.
CVE-2015-9324 is considered critical with a severity rating of 9.8 out of 10.
CVE-2015-9324 affects the easy-digital-downloads plugin versions prior to 2.3.3 and allows SQL injection.
To fix CVE-2015-9324, update your easy-digital-downloads plugin to version 2.3.3 or later.
You can find more information about CVE-2015-9324 on the official WordPress plugin website and the WPScan Vulnerability Database.