Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mwj-p2rg-6r6v

Опубликовано: 07 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoices for WooCommerce + Drag and Drop Template Builder allows SQL Injection. This issue affects PDF Invoices for WooCommerce + Drag and Drop Template Builder: from n/a through 5.3.8.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoices for WooCommerce + Drag and Drop Template Builder allows SQL Injection. This issue affects PDF Invoices for WooCommerce + Drag and Drop Template Builder: from n/a through 5.3.8.

EPSS

Процентиль: 15%
0.00049
Низкий

7.6 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.6
nvd
9 месяцев назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoices for WooCommerce + Drag and Drop Template Builder allows SQL Injection. This issue affects PDF Invoices for WooCommerce + Drag and Drop Template Builder: from n/a through 5.3.8.

EPSS

Процентиль: 15%
0.00049
Низкий

7.6 High

CVSS3

Дефекты

CWE-89