High Severity
CVE-2024-5678
Published: Feb 2, 2024
SQL injection vulnerability in the product search functionality allows attackers to extract sensitive database information including user credentials and payment data.
E-Commerce Platform v3.0-3.2
GET /search?q=test' UNION SELECT username,password FROM users--