SQL Injection Vulnerability in User Feedback Plugin by Syed Balkhi
CVE-2026-39475
8.5HIGH
What is CVE-2026-39475?
The User Feedback plugin by Syed Balkhi contains a vulnerability that allows for Blind SQL Injection, enabling attackers to manipulate database queries. This issue affects plugin versions up to and including 1.10.1, resulting in potential unauthorized access to sensitive data. Users are advised to upgrade to secure versions to mitigate this exploitation risk.
Affected Version(s)
User Feedback 0 <= 1.10.1