Skip to content

Known CVE

WP Travel Engine <= 5.7.9 - SQL Injection

WP Travel Engine 5.7.9 and earlier contains a SQL injection caused by improper neutralization of special elements used in an SQL command, letting attackers execute arbitrary SQL queries, exploit requires user interaction.

CVE-2024-30502

Critical2024CVSS 10CWE-89

cve2024 · wordpress · wp · wp-plugin · sqli · wp-travel-engine · unauth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website