ExploitMatch
Back

CVE-2026-89213

Monitor on ThreatCluster

Description

The Llavero.io WordPress plugin through 0.1.4 does not properly sanitise and escape a parameter before using it in a SQL statement, which allows unauthenticated attackers to perform SQL injection attacks and read data from the database.