ExploitMatch
Back

CVE-2026-89214

Monitor on ThreatCluster

Description

The WpCues Basic Quiz WordPress plugin through 1.6.5 does not properly sanitise and escape values before using them in a SQL statement, which allows unauthenticated attackers to perform SQL injection attacks and read data from the database.