PT-2026-31130 · Realmag777 · Currency Switcher For Woocommerce

Published

2026-04-08

·

Updated

2026-04-12

·

CVE-2026-39497

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions RealMag777 FOX woocommerce-currency-switcher versions through 1.4.5
Description RealMag777 FOX woocommerce-currency-switcher contains a flaw due to Improper Neutralization of Special Elements used in an SQL Command, leading to a Blind SQL Injection issue. The vulnerability allows for potential unauthorized access to or modification of data within the database. The vulnerable component is susceptible to crafted SQL queries.
Recommendations Update RealMag777 FOX woocommerce-currency-switcher to a version later than 1.4.5.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-39497

Affected Products

Currency Switcher For Woocommerce