Skip to content

Known CVE

MStore API < 3.9.8 - SQL Injection

The MStore API WordPress plugin before 3.9.8 is vulnerable to Blind SQL injection via the product_id parameter.

CVE-2023-3077

Critical2023CVSS 9.8

time-based-sqli · cve2023 · wpscan · wordpress · wp-plugin · wp · mstore-api · sqli

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website