WordPress · Buildkit – Product Builder For Woocommerce – Custom Pc Builder · CVE-2026-102379
**Name of the Vulnerable Software and Affected Versions**
BuildKit – Product Builder for WooCommerce – Custom PC Builder versions prior to 1.0.29
**Description**
An improper neutralization of special elements used in an SQL command allows for Blind SQL Injection. This occurs when the application fails to properly sanitize input, allowing an attacker to interfere with the queries that an application makes to its database by asking the database true/false questions and analyzing the response.
**Recommendations**
Update BuildKit – Product Builder for WooCommerce – Custom PC Builder to version 1.0.29 or later.