Vulnerabilities > Carts Guru > Cartsguru

DATE CVE VULNERABILITY TITLE RISK
2023-09-15 CVE-2023-39642 SQL Injection vulnerability in Carts.Guru Cartsguru 2.4.2
Carts Guru cartsguru up to v2.4.2 was discovered to contain a SQL injection vulnerability via the component CartsGuruCatalogModuleFrontController::display().
network
low complexity
carts-guru CWE-89
critical
9.8