๐Ÿ” CVE Alert

CVE-2026-12965

UNKNOWN 0.0

Super Store Finder <= 7.8 - Unauthenticated SQL Injection via ssf_tracking

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection and extract data from the database.

Vendor unknown
Product super store finder wordpress
Published Aug 3, 2026
Stay Ahead of the Next One

Get instant alerts for unknown super store finder wordpress

Be the first to know when new unknown vulnerabilities affecting unknown super store finder wordpress are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / Super Store Finder WordPress
0 โ‰ค 7.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/fd13bf8a-ce99-4e2b-ba36-e899df33cf98/

Credits

Michael Bielenberg WPScan