CVE-2014-9175: Wpdatatables
High severity, CVSS 7.5. EPSS: 4.6% chance of exploitation in the next 30 days.
SQL injection vulnerability in wpdatatables.php in the wpDataTables plugin 1.5.3 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the table_id parameter in a get_wdtable action to wp-admin/admin-ajax.php.
Affected products
- Wpdatatables Wpdatatables: up to and including 1.5.3
Published 2014-12-02. Last modified 2026-06-17.