CVE-2023-50857: WordPress Automation By Autonami Plugin <= 2.6.1 is vulnerable to SQL Injection
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit.This issue affects Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit: from n/a through 2.6.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-50857?
CVE-2023-50857 is a high-severity SQL injection vulnerability.
How do I fix CVE-2023-50857?
To fix CVE-2023-50857, update the FunnelKit Automations plugin to version 2.6.2 or later.
What is the impact of CVE-2023-50857?
CVE-2023-50857 allows attackers to execute arbitrary SQL commands, which can lead to data leakage or manipulation.
Which software is affected by CVE-2023-50857?
CVE-2023-50857 affects FunnelKit Automations for WordPress up to version 2.6.1.
How can I determine if my site is vulnerable to CVE-2023-50857?
Check if your version of the FunnelKit Automations plugin is 2.6.1 or earlier to determine if your site is vulnerable to CVE-2023-50857.