← לוח פגיעויות

CVE-2026-80491

גבוהה 8.6

תיאור (מקור, אנגלית)

The SAMO Forms WordPress plugin through 1.0.0 does not properly sanitise and escape user input before using it in SQL queries in several unauthenticated actions, allowing unauthenticated attackers to perform SQL injection attacks.

מדדים

CVSS 3.1
8.6 (HIGH) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-3/10/2026
CWE
CWE-89

קישורים