VYPR

ASPL Product Quotation

by WordPress

CVEs (1)

  • CVE-2026-89287Oct 11, 2026
    risk 0.00cvss —epss —

    The ASPL Product Quotation WordPress plugin through 1.1.0 does not sanitize and escape a parameter before using it in SQL statements, allowing unauthenticated attackers to perform SQL injection and read arbitrary data from the database.