CVE-2021-24391
EUVD-2021-1130306.09.2021, 11:15
An editid GET parameter of the Cashtomer WordPress plugin through 1.0.0 is not properly sanitised, escaped or validated before inserting to a SQL statement, leading to SQL injection.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cashtomer_project | cashtomer | 𝑥 ≤ 1.0.0 |
𝑥
= Vulnerable software versions