CYBERHAWK / CVE / CVE-2017-20245

CVE-2017-20245

HIGH CVSS 8.2 other

The flaw

Wow Viral Signups 2.1 WordPress plugin contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by exploiting the unescaped 'idsignup' POST parameter. Attackers can send crafted requests

What to do

Review advisory and patch per vendor guidance.

▸ Scan my repo for CVE-2017-20245

References

First seen 2026-06-12 · Tracked by PickBits CyberHawk · Weekly CVE digest