The Easy Digital Downloads WordPress plugin before 3.1.0.2 does not validate data when its output in a CSV file, which could lead to CSV injection.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Easy_digital_downloads |
Sandhillsdev |
* |
3.1.0.2 (excluding) |
References