WordPress BSK Forms Blacklist Plugin <= 3.6.2 is vulnerable to SQL Injection
CVE-2023-30872
7.6HIGH
What is CVE-2023-30872?
The BSK Forms Blacklist plugin by BannerSky is vulnerable to SQL Injection, allowing attackers to execute arbitrary SQL queries through improperly sanitized user inputs. This issue affects versions from previous releases through 3.6.2, potentially compromising the integrity of the database and exposing sensitive information.
Affected Version(s)
BSK Forms Blacklist <= 3.6.2