Vulnerabilities (CVE)

Filtered by vendor Wowonder Subscribe
Filtered by product Wowonder
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-26935 1 Wowonder 1 Wowonder 2021-03-24 5.0 MEDIUM 7.5 HIGH
In WoWonder < 3.1, remote attackers can gain access to the database by exploiting a requests.php?f=search-my-followers SQL Injection vulnerability via the event_id parameter.