Goto < 2.1 - Unauthenticated Blind SQL Injection
CVE-2021-24314
9.8CRITICAL
What is CVE-2021-24314?
The Goto WordPress theme before 2.1 did not sanitise, validate of escape the keywords GET parameter from its listing page before using it in a SQL statement, leading to an Unauthenticated SQL injection issue
Affected Version(s)
Goto 2.1