The Podlove Podcast Publisher WordPress plugin before 3.5.6 contains a \'Social & Donations\' module (not activated by default), which adds the rest route \'/services/contributor/(?P[\d]+), takes an \'id\' and \'category\' parameters as arguments. Both parameters can be used for the SQLi.