Unrated severityNVD Advisory· Published Jun 8, 2024· Updated Apr 28, 2026
WordPress Contact Form to DB by BestWebSoft plugin <= 1.7.2 - SQL Injection vulnerability
CVE-2024-35678
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BestWebSoft Contact Form to DB by BestWebSoft.This issue affects Contact Form to DB by BestWebSoft: from n/a through 1.7.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=1.7.2+ 1 more
- (no CPE)range: <=1.7.2
- (no CPE)range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.