CVE-2026-8163
Infility Global < 2.15.19 - Subscriber+ SQL Injection via order Parameter
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL statements, leading to a SQL Injection vulnerability exploitable by authenticated users with Subscriber-level access and above.
| Vendor | unknown |
| Product | infility global |
| Published | Jun 23, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown infility global
Be the first to know when new unknown vulnerabilities affecting unknown infility global are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Infility Global
0 < 2.15.19
References
Credits
TRAN THE LONG WPScan