VYPR
Unrated severityNVD Advisory· Published Sep 5, 2026

Music Store – WordPress eCommerce < 1.4.5 - Unauthenticated SQLi via paypal-data Handler

CVE-2026-82304

Description

The Music Store WordPress plugin before 1.4.5 does not sanitise and escape user input before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.