The Contact Form 7 Database Addon WordPress plugin before 1.2.6.5 does not validate data when output it back in a CSV file, which could lead to CSV injection
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Contact_form_7_database_addon | Ciphercoin | * | 1.2.6.5 (excluding) |
References