Skip to content

Known CVE

Youzify < 1.2.0 - Unauthenticated SQLi

The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection

CVE-2022-1950

Critical2022CVSS 9.8CWE-89

cve2022 · youzify · wp · wp-plugin · wordpress · sqli · time-based-sqli · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website