NA

CVE-2024-0399

Published: 15/04/2024 Updated: 15/04/2024

Vulnerability Summary

The WooCommerce Customers Manager WordPress plugin prior to 29.7 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to an SQL injection exploitable by Subscriber+ role.