PT-2026-94276 · WordPress · Publishpress Series

·

CVE-2026-66630

·

Published

2026-09-17

·

Updated

2026-09-19

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions PublishPress Series versions prior to 3.1.4
Description An SQL Injection issue exists that allows an administrator to execute malicious SQL queries. SQL Injection is a technique where an attacker inserts malicious SQL code into a query, potentially allowing unauthorized access to or modification of the database.
Recommendations Update to version 3.1.4 or later.

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-66630

Affected Products

Publishpress Series