The Subscribe to Category contains a sql_injection caused by improper neutralization of special elements used in an SQL command, letting attackers execute arbitrary SQL commands, exploit requires user interaction.
id: CVE-2023-32590
info:
name: Subscribe to Category <= 2.7.4 - SQL Injection
author: Shivam Ka
...