CVE-2026-45213: WordPress BEAR plugin <= 1.1.7.1 - SQL Injection vulnerability
Published May 12, 2026
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 BEAR woo-bulk-editor allows Blind SQL Injection.This issue affects BEAR: from n/a through <= 1.1.7.1.
Affected Software
1 affected component
RealMag777 BEAR woo-bulk-editor<=1.1.7.1
Event History
May 12, 2026
CVE Published
via MITRE·11:02 AM
Data Sourced
via MITRE·11:02 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-45213?
CVE-2026-45213 has a high severity level due to its potential for blind SQL injection attacks.
2
How do I fix CVE-2026-45213?
To fix CVE-2026-45213, upgrade the RealMag777 BEAR woo-bulk-editor plugin to version 1.1.7.2 or later.
3
What are the potential impacts of CVE-2026-45213?
The potential impacts of CVE-2026-45213 include unauthorized access to sensitive data and database manipulation.
4
Which versions of RealMag777 BEAR woo-bulk-editor are affected by CVE-2026-45213?
Versions of RealMag777 BEAR woo-bulk-editor from n/a through 1.1.7.1 are affected by CVE-2026-45213.
5
Is CVE-2026-45213 actively being exploited?
As of now, there are no confirmed reports of active exploitation specifically targeting CVE-2026-45213.