CVE-2026-42761: WordPress Active Products Tables for WooCommerce plugin <= 1.0.9 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 Active Products Tables for WooCommerce profit-products-tables-for-woocommerce allows Blind SQL Injection.This issue affects Active Products Tables for WooCommerce: from n/a through <= 1.0.9.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-42761?
CVE-2026-42761 is classified as critical with a severity score of 9.3.
What type of vulnerability is CVE-2026-42761?
CVE-2026-42761 is an SQL Injection vulnerability that allows for Blind SQL Injection.
How can I fix CVE-2026-42761?
To fix CVE-2026-42761, update the RealMag777 Active Products Tables for WooCommerce plugin to the latest version.
Which versions of the plugin are affected by CVE-2026-42761?
CVE-2026-42761 affects Active Products Tables for WooCommerce plugin versions from n/a through 1.0.9.
What consequences can arise from CVE-2026-42761?
Exploitation of CVE-2026-42761 can lead to unauthorized access to sensitive data within the database.