A SQL Injection vulnerability was discovered in AbanteCart 1.4.0 in the update() function in publichtml/admin/controller/responses/listinggrid/collections.php. The vulnerability is exploitable via the id parameter.
{ "versions": [ { "introduced": "0" }, { "last_affected": "1.4.0" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-50801.json"