Ghostwire / Intelligence Feed / Coverage

CVE-2026-5207 - LifterLMS <= 9.2.1 - Authenticated (Custom+) SQL Injection via 'order' Parameter

CVE Feed cybersecurity · April 11, 2026 · Original source
CVE ID :CVE-2026-5207 Published : April 11, 2026, 2:16 a.m. | 13 hours, 57 minutes ago Description :The LifterLMS plugin for WordPress is vulnerable to SQL Injection via the 'order' paramete...

Related Vulnerabilities

Related Coverage

Threat Actors