speakout\!_email_petitions_project Vulnerabilities and Affected Products
Vulnerabilities associated with speakout\!_email_petitions.
Products
Clear product- speakout\!_email_petitions1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2022-0846CRITICAL | SpeakOut! Email Petitions < 2.14.15.1 - Unauthenticated SQLiThe SpeakOut! Email Petitions WordPress plugin before 2.14.15.1 does not sanitise and escape the id parameter before using it in a SQL statement via the dk_speakout_sendmail AJAX action, leading to an SQL Injection exploitable by unauthenticated users | CVSS9.8v3.1 | EPSS8.79% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |