CVE-2023-0234: Siteground Security

High severity, CVSS 8.8. EPSS: 18% chance of exploitation in the next 30 days.

The SiteGround Security WordPress plugin before 1.3.1 does not properly sanitize user input before using it in an SQL query, leading to an authenticated SQL injection issue.

Affected products

  • Siteground Siteground Security: before 1.3.1 (fixed in 1.3.1)

Published 2023-02-06. Last modified 2026-06-17.