Loading market data...
← Back to CVE feed

CVE-2026-14554

MEDIUM CVSS 6.5 View on NVD ↗

Description

The Check & Log Email WordPress plugin before 2.0.15 does not properly sanitize and escape parameters before using them in SQL queries, allowing users with administrator privileges to perform SQL injection attacks.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Published: Jul 31, 2026 07:16 UTC Modified: Jul 31, 2026 20:16 UTC