The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement, leading to an SQL InjectionCreditsJeremie AmsellemReferenceshttps://wpscan.com/vulnerability/cf907d53-cc4a-4b02-bed3-64754128112c