CVE-2026-66659: WordPress Tablesome Table plugin <= 1.2.9 - SQL Injection vulnerability
Published Aug 12, 2026
·Updated
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Essekia Tablesome Table allows Blind SQL Injection.
This issue affects Tablesome Table: from n/a through 1.2.9.
Affected Software
1 affected component
WordPress Tablesome Table>=n/a<1.2.9
Event History
Aug 12, 2026
CVE Published
via MITRE·06:01 AM
Data Sourced
via MITRE·06:01 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:22 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-66659?
The severity of CVE-2026-66659 is critical with a CVSS score of 9.3.
2
How do I fix CVE-2026-66659?
To fix CVE-2026-66659, update the WordPress Tablesome Table plugin to version 1.2.10 or later.
3
What type of vulnerability is CVE-2026-66659?
CVE-2026-66659 is an SQL Injection vulnerability that allows for Blind SQL Injection.
4
Which versions of WordPress Tablesome Table are affected by CVE-2026-66659?
CVE-2026-66659 affects all versions of the Tablesome Table plugin from its initial release up to version 1.2.9.
5
What impacts can result from CVE-2026-66659?
CVE-2026-66659 can lead to unauthorized database access and potential data leaks due to its SQL Injection nature.