NA

CVE-2024-32709

Published: 24/04/2024 Updated: 24/04/2024

Vulnerability Summary

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Plechev Andrey WP-Recall.This issue affects WP-Recall: from n/a up to and including 16.26.5.

Github Repositories

CVE-2024-32709-Poc WP-Recall – Registration, Profile, Commerce & More <= 16265 - Unauthenticated SQL Injection wwwwordfencecom/threat-intel/vulnerabilities/wordpress-plugins/wp-recall/wp-recall-registration-profile-commerce-more-16265-unauthenticated-sql-injection Build wordpress: docker-compose -f stackyml up Diff wp-recall16265 vs wp-recal