CVE-2026-8163

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/06/2026
Last modified:
23/06/2026

Description

The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL statements, leading to a SQL Injection vulnerability exploitable by authenticated users with Subscriber-level access and above.