ZeroHour

CVE-2024-43917

CVSS 3.1
9.8 critical
EPSS
23%p98
Published
()
Modified
Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TemplateInvaders TI WooCommerce Wishlist allows SQL Injection.This issue affects TI WooCommerce Wishlist: from n/a through 2.8.2.

Vendors
templateinvaders
Products
ti woocommerce wishlist
Ecosystems
WordPress, E-commerce
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news