Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Membership Software WishList Member X.This issue affects WishList Member X: from n/a before 3.26.7.
Problem types
CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Product status
Any version before 3.26.7
Credits
Dave Jong (Patchstack)
References
patchstack.com/...ql-query-execution-vulnerability?_s_id=cve