CVE-2024-44004
WPCargo Track & Trace SQL Injection Vulnerability.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A critical SQL injection vulnerability exists in the WPCargo Track & Trace WordPress plugin. This flaw could allow unauthenticated attackers to manipulate or access sensitive data by injecting malicious SQL commands over the network. Organizations should verify if this plugin is in use to assess potential exposure and