The Email Subscribers by Icegram Express WordPress plugin before 5.7.44 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacksCreditsDmitrii IgnatyevWPScanReferenceshttps://wpscan.com/vulnerability/5e00ba37-da7f-4703-a0b9-65237696fbdd/