← WordPress Vulnerabilities
WordPress security by component

CURCY - WooCommerce Multi Currency - Currency Switcher

CURCY - WooCommerce Multi Currency - Currency Switcher is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Mar 07, 2025; the highest published CVSS base score is 7.5.

Plugin slug: curcy-woocommerce-multi-currency-currency-switcher

CVE-2024-13320: CURCY - WooCommerce Multi Currency - Currency Switcher: SQL injection

CURCY - WooCommerce Multi Currency - Currency Switcher is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.

PublishedMar 07, 2025
Safe version guidanceSee mitigation notes
Published vulnerabilities for curcy-woocommerce-multi-currency-currency-switcher
Safe version
Mar 07, 2025 CVE-2024-13320
CURCY - WooCommerce Multi Currency - Currency Switcher: SQL injection
CURCY - WooCommerce Multi Currency - Currency Switcher is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
See mitigation notes
CVE7.5
NVDPending