← לוח פגיעויות

CVE-2026-48837

גבוהה 8.5

תיאור (מקור, אנגלית)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Unlimited Elements For Elementor allows Blind SQL Injection. This issue affects Unlimited Elements For Elementor: from n/a through 2.0.8.

מדדים

CVSS 3.1
8.5 (HIGH) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-1/10/2026
CWE
CWE-89

קישורים