Loading market data...
← Back to CVE feed

CVE-2026-78472

UNKNOWN View on NVD ↗

Description

The Ni WooCommerce Sales Report WordPress plugin before 4.2.0 does not sanitise and escape a parameter before using it in a SQL statement, allowing unauthenticated users to perform SQL injection attacks.

Published: Sep 16, 2026 06:16 UTC Modified: Sep 16, 2026 20:25 UTC