CVE-2026-54812: WordPress Motors plugin <= 1.4.109 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Motors allows Blind SQL Injection.
This issue affects Motors: from n/a through 1.4.109.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Motors pluginto a version that resolves this vulnerability.Fixed in 1.4.110
Event History
Frequently Asked Questions
What is the severity of CVE-2026-54812?
CVE-2026-54812 has a severity rating of 9.3, which is classified as critical.
How do I fix CVE-2026-54812?
To mitigate CVE-2026-54812, update the StylemixThemes Motors plugin to version 1.4.110 or later.
What type of vulnerability is CVE-2026-54812?
CVE-2026-54812 is an SQL Injection vulnerability that allows Blind SQL Injection.
Which versions of the Motors plugin are affected by CVE-2026-54812?
CVE-2026-54812 affects all versions of the Motors plugin prior to 1.4.110.
What impact does CVE-2026-54812 have on security?
CVE-2026-54812 can allow attackers to execute arbitrary SQL commands, potentially leading to data exposure or corruption.