CVE-2023-28662
Description
The Gift Cards (Gift Vouchers and Packages) WordPress Plugin, version <= 4.3.1, is affected by an unauthenticated SQL injection vulnerability in the template parameter in the wpgv_doajax_voucher_pdf_save_func action.
CWE
- CWE-89 — CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Affected
- n/a / Gift Cards (Gift Vouchers and Packages) WordPress Plugin — v=<= 4.3.1 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2023/28xxx/CVE-2023-28662.json