WordPress Coming Soon Plugin <= 1.5.9 is vulnerable to SQL Injection
CVE-2022-46849
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 6 November 2023
What is CVE-2022-46849?
An SQL Injection vulnerability has been identified in the Coming Soon Page β Responsive Coming Soon & Maintenance Mode plugin by Weblizar. This flaw arises from the improper neutralization of special elements within SQL commands, allowing attackers to manipulate database queries. Successful exploitation can compromise the integrity and availability of the database, posing significant risks to users' sensitive data. The affected versions range from n/a up to and including 1.5.9, highlighting the importance of immediate updates and security measures for those using this plugin.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Coming Soon Page β Responsive Coming Soon & Maintenance Mode <= 1.5.9
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved