← WordPress Vulnerabilities
WordPress security by component

ShipEngine Shipping Quotes

ShipEngine Shipping Quotes is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Feb 12, 2025; the highest CVE/CNA score is 7.5.

Plugin slug: shipengine-shipping-quotes

CVE-2024-13531: ShipEngine Shipping Quotes: SQL injection

ShipEngine Shipping Quotes is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.

PublishedFeb 12, 2025
Safe version guidanceSee mitigation notes
Safe version
Feb 12, 2025 CVE-2024-13531
ShipEngine Shipping Quotes: SQL injection
ShipEngine Shipping Quotes is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.5
NVD7.5