Input validation vulnerability in Shopping Cart & eCommerce Store 5.6.3

The plugin used for creating online stores on WordPress, called Shopping Cart & eCommerce Store, has a security issue known as SQL Injection. This happens when a user adds a product to their cart using a specific shortcode. The plugin does not properly protect against this type of attack, which allows hackers with certain levels of access to add their own malicious queries to the database and access sensitive information.

Detected in:

Shopping Cart & eCommerce Store fixed vulnerable versions: >= * <= 5.6.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.