Beveiligingsadvies

CVE-2026-32459

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-13 11:42:22
Laatst bijgewerkt 2026-04-29 09:52:00
Toegewezen door Patchstack
CVSS-score 7.6
Status PUBLISHED

Beschrijving

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in flycart UpsellWP checkout-upsell-and-order-bumps allows Blind SQL Injection.This issue affects UpsellWP: from n/a through <= 2.2.4.