SQL Injection Vulnerability in WP Travel Gutenberg Blocks by WordPress
CVE-2026-54808
9.3CRITICAL
What is CVE-2026-54808?
An SQL Injection vulnerability exists in WP Travel Gutenberg Blocks, allowing attackers to execute unauthorized commands by exploiting improper neutralization of special elements in SQL commands. This issue affects versions from n/a through 3.9.4, potentially compromising the security of affected WordPress installations and exposing sensitive information.
Affected Version(s)
WP Travel Gutenberg Blocks <= 3.9.4