Input validation vulnerability in HUSKY – Products Filter for WooCommerce Professional 1.3.4.2

The HUSKY – Products Filter for WooCommerce plugin (formerly WOOF) for WordPress is vulnerable to a type of attack called “generic SQL injection” in versions up to 1.3.4.2. This type of attack occurs when insufficient safeguards are in place to protect against unauthenticated attackers, allowing them to append extra SQL queries to existing queries. This can be used to extract sensitive information from the database.

Detected in:

HUSKY – Products Filter for WooCommerce Professional fixed vulnerable versions: >= * <= 1.3.4.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.