cleantalk
Vulnerabilities and Security Researches

GIFT4U – Gift Cards All in One for Woo, CVE-2026-54809

CVE, Research URL

CVE-2026-54809

Published on
Jun 17, 2026
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VillaTheme GIFT4U allows Blind SQL Injection. This issue affects GIFT4U: from n/a through 1.0.10.
Affected versions
max 1.1.0.
Status
vulnerable