SQL Injection Vulnerability in Taskbuilder Plugin by WordPress
CVE-2026-52697
8.5HIGH
What is CVE-2026-52697?
The Taskbuilder plugin for WordPress versions up to 5.0.7 is susceptible to an SQL Injection vulnerability, allowing attackers to manipulate queries made to the database. This exploitation could lead to unauthorized access to sensitive information or database manipulation. Website administrators using vulnerable versions are strongly urged to update their plugins to ensure the integrity and security of their systems.
Affected Version(s)
Taskbuilder <= 5.0.7