Skip to content

Conversation

@AlteredCoder
Copy link
Contributor

No description provided.

@github-actions
Copy link

Hello @AlteredCoder,

Scenarios/AppSec Rule are compliant with the taxonomy, thank you for your contribution!

@github-actions
Copy link

Hello @AlteredCoder,

✅ The new VPATCH Rule is compliant, thank you for your contribution!

name: crowdsecurity/vpatch-CVE-2024-6205
description: "PayPlus Payment Gateway WordPress plugin - SQL Injection (CVE-2024-6205)"
rules:
- and:
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

maybe also restrict to urls where wc-api is payplus_gateway? Don't know how fp prone libinjection is, would put us on the safe side.

@github-actions
Copy link

Hello @AlteredCoder,

✅ The new VPATCH Rule is compliant, thank you for your contribution!

@github-actions
Copy link

Hello @AlteredCoder,

Scenarios/AppSec Rule are compliant with the taxonomy, thank you for your contribution!

@AlteredCoder AlteredCoder merged commit f440438 into master Feb 3, 2025
@AlteredCoder AlteredCoder deleted the add_cve_2024-6205 branch February 3, 2025 13:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants