SQL Injection Vulnerability in Visualizer Plugin by WordPress
CVE-2026-65526
8.5HIGH
What is CVE-2026-65526?
A SQL injection vulnerability has been identified in the Visualizer plugin for WordPress, affecting versions up to and including 4.0.6. This vulnerability allows attackers to manipulate SQL queries by injecting malicious input, potentially compromising the security of the database and exposing sensitive information. Users and administrators are encouraged to apply the necessary patches to secure their installations from potential exploitation.
Affected Version(s)
Visualizer <= 4.0.1