CVE-2024-44004: Wptaskforce Track & Trace
Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Arni Cinco WPCargo Track & Trace wpcargo allows SQL Injection. This issue affects WPCargo Track & Trace: before 8.0.4.
Affected products
- Wptaskforce Track & Trace: up to and including 7.0.6
Published 2024-09-17. Last modified 2026-08-18.