Feed/CVE-2026-16539
CVE-2026-16539

CVE-2026-16539

Published Aug 3, 2026·Updated Aug 3, 2026

NVD Description

The sm page duplicator WordPress plugin through 1.0.0 does not sanitise and escape a stored value before using it in a SQL statement when duplicating a page, allowing users with the Editor role and above to perform SQL Injection attacks.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free