Unescaped parameter $data['sql'] used in $wpdb->get_results($data['sql'])\n$data['sql'] assigned unsafely at line 1034:\n $data['sql'] = "SELECT * FROM {$data['table']}" . ( null !== $data['where'] ? " WHERE {$data['where']}" : '' ) . ( null !== $data['sort'] ? " ORDER BY {$data['sort']}" : '' ) . ( null !== $data['limit'] ? ' LIMIT ' . ( 1 < $page ? ( ( $page - 1 ) * $data['limit'] ) . ',' : '' ) . "{$data['limit']}" : '' )\n$page assigned unsafely at line 1030:\n $page = absval( $_GET[ $data['page_var'] ] )\n$data['limit'] used without escaping.\n$_GET[$data['page_var']] used without escaping.\n$data['page_var'] used without escaping.
Unescaped parameter $group_key used in $wpdb->query("DELETE FROM `{$wpdb->options}` WHERE option_name LIKE '_site_transient_{$group_key}%'")\n$group_key assigned unsafely at line 699:\n $group_key = pods_sanitize_like( $group_key )\n$group_key assigned unsafely at line 679:\n $group_key = pods_sanitize_like( $group_key )\n$group_key assigned unsafely at line 660:\n $group_key = $group . '_'\n$group used without escaping.
Unescaped parameter $group_key used in $wpdb->query("DELETE FROM `{$wpdb->options}` WHERE option_name LIKE '_transient_{$group_key}%'")\n$group_key assigned unsafely at line 679:\n $group_key = pods_sanitize_like( $group_key )\n$group_key assigned unsafely at line 660:\n $group_key = $group . '_'\n$group used without escaping.
Affected Plugins
Plugins that have instances of this rule violation
Unescaped parameter $helper->ID used in $wpdb->query("UPDATE `{$wpdb->postmeta}` SET `meta_key` = 'helper_type' WHERE `meta_key` = 'type' AND `post_id` = {$helper->ID}")\n$helper->ID used without escaping.
Unescaped parameter $id used in $wpdb->get_results("SELECT `term_id`, `taxonomy` FROM `{$wpdb->term_taxonomy}` WHERE `term_taxonomy_id` = {$id}")\n$id used without escaping.