SQL Injection Vulnerability in DevItems HashBar Notification Bar for WordPress
CVE-2026-94117
7.6HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 22 September 2026
What is CVE-2026-94117?
A vulnerability exists in the DevItems HashBar β WordPress Notification Bar that allows for Blind SQL Injection, enabling attackers to manipulate SQL queries. This could lead to unauthorized access to sensitive data or the manipulation of database entries. Users of versions prior to 2.0.3 are at risk and should take immediate action to mitigate potential threats.
Affected Version(s)
HashBar β WordPress Notification Bar <= 2.0.3