Back

HIGH

WordPress APIExperts Square for WooCommerce plugin <= 4.7.1 - SQL Injection vulnerability

Published May 12, 2026

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce woosquare allows Blind SQL Injection.This issue affects APIExperts Square for WooCommerce: from n/a through <= 4.7.1.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner Patchstack
Published May 12, 2026
Updated May 13, 2026
Reserved May 11, 2026

CISA Vulnrichment

Updated May 13, 2026

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner Patchstack
Published May 12, 2026
Updated May 13, 2026

GitHub

No data