Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Daniel S??derstr??m / Sidney van de Stouwe Subscribe to Category allows SQL Injection.This issue affects Subscribe to Category: from n/a through 2.7.4.