CYBERHAWK / CVE / CVE-2017-20244

CVE-2017-20244

HIGH CVSS 8.2 other

The flaw

Wow Forms WordPress Plugin version 2.1 contains an SQL injection vulnerability that allows unauthenticated attackers to read arbitrary database information by exploiting an unescaped POST parameter. Attackers can inject SQL code through the

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2017-20244

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest