Ad

CVE-2026-88926

NONE EPSS 0.18%
Обновлено 19 сентября 2026
Unknown
Параметр Значение
Уязвимые версии до 1.2.4
Тип уязвимости CWE-89 SQL Injection
Поставщик Unknown
Публичный эксплойт Нет

The VikRentItems Flexible Rental Management System WordPress plugin before 1.2.4 does not sanitise and escape some of its parameters before using them in SQL statements, allowing unauthenticated users to perform SQL injection attacks.

Тип уязвимости (CWE)

Уязвимые продукты

unknown:vikrentitems flexible rental management system