CVE-2026-42755: WordPress TableOn plugin <= 1.0.5.1 - SQL Injection vulnerability
Published May 27, 2026
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 TableOn posts-table-filterable allows Blind SQL Injection.This issue affects TableOn: from n/a through <= 1.0.5.1.
Affected Software
1 affected component
RealMag777 TableOn<=1.0.5.1
Event History
May 27, 2026
CVE Published
via MITRE·09:49 AM
Data Sourced
via MITRE·09:49 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-42755?
CVE-2026-42755 has a critical severity rating of 9.3.
2
How do I fix CVE-2026-42755?
To fix CVE-2026-42755, update the RealMag777 TableOn plugin to a version greater than 1.0.5.1.
3
What type of vulnerability is CVE-2026-42755?
CVE-2026-42755 is classified as an SQL Injection vulnerability.
4
What systems are affected by CVE-2026-42755?
CVE-2026-42755 affects RealMag777 TableOn versions up to and including 1.0.5.1.
5
What can attackers do with CVE-2026-42755?
Attackers can execute blind SQL injection attacks, potentially accessing sensitive database information.