Vulnerabilities > Superstorefinder > Super Store Finder > 6.9.8
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-09 | CVE-2024-13440 | Unspecified vulnerability in Superstorefinder Super Store Finder The Super Store Finder plugin for WordPress is vulnerable to SQL Injection via the ‘ssf_wp_user_name’ parameter in all versions up to, and including, 7.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 8.2 |