Critical severity9.8NVD Advisory· Published Sep 8, 2024· Updated Jun 17, 2026
CVE-2024-6928
CVE-2024-6928
Description
The Opti Marketing WordPress plugin through 2.0.9 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- WordPress/Opti Marketing WordPress plugindescription
- cpe:2.3:a:opti.marketing:opti_marketing:*:*:*:*:*:wordpress:*:*Range: <=2.0.9
- Range: <=2.0.9
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/7bb9474f-2b9d-4856-b36d-a43da3db0245/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.