First published: Thu Dec 28 2023(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nasirahmed Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms.This issue affects Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms: from n/a through 1.75.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Advanced Form Integration | <=1.75.0 |
Update to 1.76.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-50853 is classified as a critical severity vulnerability due to its ability to facilitate SQL injection attacks.
To mitigate CVE-2023-50853, update the Advanced Form Integration plugin to the latest version beyond 1.75.0.
CVE-2023-50853 is identified as an SQL Injection vulnerability, which allows attackers to manipulate database queries.
CVE-2023-50853 affects versions of the Advanced Form Integration plugin up to and including 1.75.0.
Exploiting CVE-2023-50853 can lead to unauthorized access to sensitive data, data modification, or complete database compromise.