Unauthenticated SQL Injection in ReadyEcommerce by CodeCanyon
CVE-2026-63106
9.3CRITICAL
What is CVE-2026-63106?
ReadyEcommerce prior to version 4.5.2 is vulnerable to an unauthenticated SQL injection through the product listing API. The vulnerability arises from unsanitized input in the rating parameter, which is directly concatenated into a MySQL HAVING clause. This flaw allows attackers to execute time-based blind SQL injection attacks, potentially exposing sensitive data such as user credentials and administrator password hashes. Since the database connection operates with root privileges, there is also a risk of unauthorized file system access.
Affected Version(s)
Ready eCommerce 0
