CVE · High

CVE-2022-1800 — WP All Export – Drag & Drop Export to Any Custom CSV, XML & Excel [wp-all-export] < 1.3.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2022-1800 WP All Export – Drag & Drop Export to Any Custom CSV, XML & Excel [wp-all-export] < 1.3.5 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') High 7.2 < 1.3.5 1.3.5 2022-05-20

CVE-2022-1800

The WP All Export plugin before version 1.3.5 contains an authenticated SQL injection vulnerability that allows logged-in users to execute arbitrary SQL queries on the database. Users should upgrade to version 1.3.5 or later to patch this security issue.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.