SQL Injection Vulnerability in Cozmoslabs Profile Builder Pro Product
CVE-2026-27413
9.3CRITICAL
What is CVE-2026-27413?
A security vulnerability has been identified in the Cozmoslabs Profile Builder Pro plugin, allowing for blind SQL injection attacks. This issue could enable attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive data. All users of Profile Builder Pro versions up to 3.13.9 should take immediate steps to secure their installations against such exploits.
Affected Version(s)
Profile Builder Pro < 3.14.0