CVE-2021-26935
In WoWonder < 3.1, remote attackers can gain access to the database by exploiting a requests.php?f=search-my-followers SQL Injection vulnerability via the event_id parameter. Date published : 2021-03-18 https://securityforeveryone.com/blog/wowonder-0-day-vulnerability-cve-2021-26935