CVE-2026-18884 | wpgenie WooCommerce Lottery Plugin up to 2.2.9 on WordPress orderby/order sql injection
A vulnerability has been found in wpgenie WooCommerce Lottery Plugin up to 2.2.9 on WordPress and classified as critical. Affected is an unknown function. This manipulation of the argument orderby/order causes sql injection.
This vulnerability appears as CVE-2026-18884. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More