The Easy Digital Downloads WordPress plugin before 3.1.0.2 does not validate data when its output in a CSV file, which could lead to CSV injection.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Easy_digital_downloads | Awesomemotive | * | 3.1.0.2 (excluding) |
References