Input validation vulnerability in SMS Alert Order Notifications – WooCommerce 3.8.2

The SMS Alert Order Notifications – WooCommerce plugin for WordPress has a security issue that makes it vulnerable to a type of hacking known as SQL Injection. This flaw allows attackers to add their own malicious code into the plugin, which can be used to access sensitive information from the website’s database. This vulnerability affects all versions of the plugin up to 3.8.1 and can be exploited by anyone, even without a user account.

Detected in:

SMS Alert Order Notifications – WooCommerce fixed vulnerable versions: >= * <= 3.8.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.