CVE-2022-2754
CRITICAL 9.8EPSS 37.7%
The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some reservation parameters before using them in SQL statements, which could allow unauthenticated attackers to perform SQL Injection attacks
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 37.71% chance of exploitation in the next 30 days, 98th percentile
- Published
- 2022-09-19
- Updated
- 2024-08-03