Input validation vulnerability in CURCY – WooCommerce Multi Currency – Currency Switcher 2.3.6

A plugin called CURCY – WooCommerce Multi Currency – Currency Switcher for WordPress has a security vulnerability that could allow hackers to access sensitive information from the database. This is because the plugin does not properly handle user input and does not prepare the SQL query properly. As a result, attackers could add their own SQL commands to the existing ones and gain access to private data.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.