WordPress Plugin Visual Email Designer for WooCommerce SQL Injection - CVE-2022-3860 - Vulnerability Database

WordPress Plugin Visual Email Designer for WooCommerce SQL Injection - CVE-2022-3860

High
Reference: CVE-2022-3860
Title: WordPress Plugin Visual Email Designer for WooCommerce SQL Injection
Overview:

WordPress Plugin Visual Email Designer for WooCommerce is prone to an SQL injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application access or modify data or exploit latent vulnerabilities in the underlying database. WordPress Plugin Visual Email Designer for WooCommerce version 1.7.1 is vulnerable prior versions may also be affected.