Update the WordPress Easy Digital Downloads plugin to the latest available version (at least 3.1.0.4).
Joshua Martinelle discovered and reported this SQL Injection vulnerability in WordPress Easy Digital Downloads Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information. This vulnerability has been fixed in version 3.1.0.4.
Contributor+ Stored XSS Vulnerability
31.01.2023
Unauth. CSV Injection vulnerability
28.10.2022
Arbitrary Post Deletion via CrossSite Request Forgery (CSRF) vulnerability
17.10.2022
PHP Object Injection vulnerability
10.08.2022
Stored CrossSite Scripting (XSS) vulnerability
28.03.2022