CRITICAL
nickboss
CVE published 2026-08-06
CVE-2026-66447
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-06T15:17:20.207Z and has not been modified since then. The vulnerability affects WordPress File Upload plugin version 5.1.7 and earlier, allowing unauthenticated SQL injection. This critical vulnerability has a CVSS score of 9.3 and is classified as CRITICAL. Administrators and users should apply pa [truncated]