SQL Injection Vulnerability in Ajax Search Pro Plugin from wpdreams
CVE-2026-96331
9.3CRITICAL
What is CVE-2026-96331?
The Ajax Search Pro plugin by wpdreams is susceptible to SQL Injection due to improper handling of special elements within SQL commands. This vulnerability allows attackers to execute blind SQL injection attacks, potentially compromising the database. It affects multiple versions of the Ajax Search Pro plugin up to and including version 4.29.1, making it crucial for site administrators to update and secure their installations promptly.
Affected Version(s)
Ajax Search Pro 0 <= 4.29.1