Feed/CVE-2026-13613
CVE-2026-13613HIGHCVSS 8.8

CVE-2026-13613

Published Aug 12, 2026·Updated Aug 12, 2026

NVD Description

The KiviCare WordPress plugin before 4.5.2 does not properly sanitise and escape user-supplied parameters before using them in a SQL query, allowing authenticated users with a clinic staff-level role to perform SQL injection.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free