CVE-2026-15670Injection SQL, authentifié (Administrateur+), dans SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery (<= 3.9.7)
- Plugin
- SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery
- Versions
- <= 3.9.7
- CVSS
- 4.9/10
- Correctif
- 3.9.8
27 juil. 2026
Lire