Vulnerabilities > Smackcoders > Visual Email Designer FOR Woocommerce > High

DATE CVE VULNERABILITY TITLE RISK
2023-01-02 CVE-2022-3860 Unspecified vulnerability in Smackcoders Visual Email Designer for Woocommerce
The Visual Email Designer for WooCommerce WordPress plugin before 1.7.2 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as author.
network
low complexity
smackcoders
8.8