CVE-2024-49623

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hasan movahed Duplicate Title Validate duplicate-title-validate allows Blind SQL Injection.This issue affects Duplicate Title Validate: from n/a through <= 1.0.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hasanmovahed:duplicate_title_validate:*:*:*:*:*:wordpress:*:*

History

23 Apr 2026, 15:19

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.8
v2 : unknown
v3 : 8.5

01 Apr 2026, 16:18

Type Values Removed Values Added
Summary (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hasan Movahed Duplicate Title Validate allows Blind SQL Injection.This issue affects Duplicate Title Validate: from n/a through 1.0. (en) Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hasan movahed Duplicate Title Validate duplicate-title-validate allows Blind SQL Injection.This issue affects Duplicate Title Validate: from n/a through <= 1.0.
References
  • {'url': 'https://patchstack.com/database/vulnerability/duplicate-title-validate/wordpress-duplicate-title-validate-plugin-1-0-sql-injection-vulnerability?_s_id=cve', 'tags': ['Third Party Advisory'], 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/duplicate-title-validate/vulnerability/wordpress-duplicate-title-validate-plugin-1-0-sql-injection-vulnerability?_s_id=cve -

24 Oct 2024, 14:18

Type Values Removed Values Added
First Time Hasanmovahed duplicate Title Validate
Hasanmovahed
CPE cpe:2.3:a:hasanmovahed:duplicate_title_validate:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/duplicate-title-validate/wordpress-duplicate-title-validate-plugin-1-0-sql-injection-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/duplicate-title-validate/wordpress-duplicate-title-validate-plugin-1-0-sql-injection-vulnerability?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 8.5
v2 : unknown
v3 : 8.8

21 Oct 2024, 17:09

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de neutralización incorrecta de elementos especiales utilizados en un comando SQL ('Inyección SQL') en Hasan Movahed. Duplicate Title Validate permite la inyección SQL ciega. Este problema afecta a Duplicate Title Validate: desde n/a hasta 1.0.

20 Oct 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-20 09:15

Updated : 2026-04-23 15:19


NVD link : CVE-2024-49623

Mitre link : CVE-2024-49623

CVE.ORG link : CVE-2024-49623


JSON object : View

Products Affected

hasanmovahed

  • duplicate_title_validate
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')