← Back to browse · API

CVE-2023-28662

Severity
CRITICAL
CVSS
9.8
EPSS
0.42186
Risk score
53.97
CISA KEV
No
PoC
No
Published
2023-03-22
Modified
2025-02-25
First seen
2026-08-07
Aliases
EUVD-2023-32323, GHSA-9C49-3QRV-GXFP
Products
n/a:Gift Cards (Gift Vouchers and Packages) WordPress Plugin ≤ 4.3.1
Sources
euvd EUVD-2023-32323

Description

The Gift Cards (Gift Vouchers and Packages) WordPress Plugin, version <= 4.3.1, is affected by an unauthenticated SQL injection vulnerability in the template parameter in the wpgv_doajax_voucher_pdf_save_func action.

References