Description
One or more pages contain HTML comments that look like SQL statements. These SQL statements may disclose sensitive information to an attacker. This alert may be a false positive.
Remediation
These comments should be investigated and, if necessary, removed from the pages.
References
Related Vulnerabilities
WordPress Plugin W3 Total Cache Multiple Vulnerabilities (0.9.4.1)
WordPress Plugin ACF to REST API Information Disclosure (3.2.0)
WordPress Plugin HTML5 MP3 Player with Playlist Free Information Disclosure (2.6)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-5739)