OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-94124

HIGH · CVSS 8.5 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

WP EasyCart versions up to 5.9.4 are vulnerable to a SQL injection flaw that could allow attackers to manipulate database queries, potentially leading to unauthorized data access or modification. Organizations using this e-commerce plugin should prioritize patching this vulnerability to mitigate the risk of data breaches and maintain the integrity of their systems.

CVE
CVE-2026-94124
Severity
HIGH
CVSS
8.5
EPSS
0.22%

Original NVD Description

Contributor SQL Injection in WP EasyCart <= 5.9.4 versions.