The Rank Math SEO WordPress plugin before 1.0.280 does not properly sanitise and escape a parameter before using it in a SQL query, allowing high-privilege users such as administrators to perform SQL injection attacks.
https://wpscan.com/vulnerability/74d473c2-ced1-47f2-b530-dcd6ea003760/