CVE-2026-32499: WordPress ChatBot plugin <= 7.7.9 - SQL Injection vulnerability
Published Mar 25, 2026
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in QuantumCloud ChatBot chatbot allows Blind SQL Injection.This issue affects ChatBot: from n/a through <= 7.7.9.
Affected Software
1 affected component
QuantumCloud ChatBot<=7.7.9
Event History
Mar 25, 2026
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·05:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-32499?
CVE-2026-32499 is rated as a high severity SQL Injection vulnerability.
2
How do I fix CVE-2026-32499?
To fix CVE-2026-32499, update the QuantumCloud ChatBot plugin to a version higher than 7.7.9.
3
What type of vulnerability is CVE-2026-32499?
CVE-2026-32499 is characterized as an SQL Injection vulnerability.
4
Which versions of the software are affected by CVE-2026-32499?
CVE-2026-32499 affects QuantumCloud ChatBot plugin versions up to and including 7.7.9.
5
Can CVE-2026-32499 lead to data breaches?
Yes, CVE-2026-32499 can potentially lead to unauthorized data access and data breaches through SQL Injection.