OCTOBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-96346

HIGH · CVSS 7.6 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-09-30 · Last synced 2026-10-08

CyberRota Analysis

AI-Generated

The vulnerability allows for SQL injection in WP ERP versions up to 1.17.9, potentially enabling attackers to manipulate database queries and gain unauthorized access to sensitive data. Organizations using this plugin should prioritize patching or upgrading to mitigate the risk of data breaches and unauthorized data manipulation. Immediate action is recommended for all users of affected versions to protect their systems from exploitation.

CVE
CVE-2026-96346
Severity
HIGH
CVSS
7.6
EPSS
0.28%

Original NVD Description

Author SQL Injection in WP ERP <= 1.17.9 versions.