CVE-2026-8163
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/06/2026
Last modified:
23/06/2026
Description
The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL statements, leading to a SQL Injection vulnerability exploitable by authenticated users with Subscriber-level access and above.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



