Skip to content

Known CVE

WordPress Easy Digital Downloads 3.1.0.2/3.1.0.3 - SQL Injection

WordPress Easy Digital Downloads plugin 3.1.0.2 and 3.1.0.3 contains a SQL injection vulnerability in the s parameter of its edd_download_search action. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site.

CVE-2023-23489

Critical2023CVSS 9.8CWE-89

time-based-sqli · cve2023 · easy-digital-downloads · unauth · wpscan · wordpress · wp · wp-plugin

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website