Metrics
Affected Vendors & Products
Solution
Update the WordPress Shipping for Nova Poshta wordpress plugin to the latest available version (at least 1.19.7).
Workaround
No workaround given by the vendor.
Mon, 27 Jan 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 27 Jan 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MORKVA Shipping for Nova Poshta allows SQL Injection. This issue affects Shipping for Nova Poshta: from n/a through 1.19.6. | |
Title | WordPress Shipping for Nova Poshta plugin <= 1.19.6 - SQL Injection vulnerability | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-01-27T14:40:36.351Z
Reserved: 2025-01-23T14:51:10.027Z
Link: CVE-2025-24612

Updated: 2025-01-27T14:40:31.403Z

Status : Received
Published: 2025-01-27T14:15:29.063
Modified: 2025-01-27T14:15:29.063
Link: CVE-2025-24612

No data.

Updated: 2025-07-12T22:23:59Z