Input validation vulnerability in TI WooCommerce Wishlist 2.7.4

The TI WooCommerce Wishlist plugin for WordPress is vulnerable to a type of cyber attack known as SQL Injection in versions prior to 2.7.3. This occurs because the user supplied parameter is not properly secured and the existing SQL query was not properly prepared beforehand. This means that unauthenticated attackers can add additional SQL queries to existing queries, allowing them to access sensitive information from the database.

Detected in:

TI WooCommerce Wishlist open vulnerable versions: >= * < 2.7.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.