webSPELL 4.2.4 Cross Site Request Forgery / SQL Injection webSPELL version 4.2.4 suffers from cross site request forgery and remote SQL injection vulnerabilities. Leave a ReplyYou must be logged in to post a comment. Filed under: exploit - @ February 19, 2016 8:45 am