The Easy Digital Downloads WordPress plugin before 3.1.0.2 does not validate data when its output in a CSV file, which could lead to CSV injection.CreditsFrancesco CarlucciReferenceshttps://wpscan.com/vulnerability/16e2d970-19d0-42d1-8fb1-e7cb14ace1d0