CVE-2026-108541 | highwarden Super Store Finder up to 3.8 index.php lat/lng sql injection
A vulnerability has been found in highwarden Super Store Finder up to 3.8 and classified as critical. Affected is an unknown function of the file /products/superstorefinder/index.php. The manipulation of the argument lat/lng leads to sql injection.
This vulnerability is referenced as CVE-2026-108541. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
The affected component should be upgraded.
The vendor was contacted early, responded in a very professional manner and quickly released a fixed version of the affected product.VulDB Recent EntriesRead More