Vulnerabilities > Opti Marketing > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-09-08 CVE-2024-6928 SQL Injection vulnerability in Opti.Marketing Opti Marketing
The Opti Marketing WordPress plugin through 2.0.9 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.
network
low complexity
opti-marketing CWE-89
critical
9.8