CyberRota Analysis
AI-GeneratedThe vulnerability allows SQL injection in the Estatik plugin for WordPress, affecting versions up to 4.3.5, which could enable attackers to execute arbitrary SQL commands and potentially gain unauthorized access to sensitive data. Organizations using this plugin should prioritize patching or upgrading to mitigate the risk of data breaches and unauthorized database manipulation. Immediate action is recommended for web administrators and security teams managing WordPress sites with the affected plugin.
CVE
CVE-2026-96345
Severity
HIGH
CVSS
7.6
EPSS
0.28%
Original NVD Description
Administrator SQL Injection in Estatik <= 4.3.5 versions.