VYPR

Mdgiftproduct

by Digincube

CVEs (1)

  • CVE-2024-33268CriApr 29, 2024
    risk 0.64cvss 9.8epss 0.00

    SQL Injection vulnerability in Digincube mdgiftproduct before 1.4.1 allows an attacker to run arbitrary SQL commands via the MdGiftRule::addGiftToCart method.