๐Ÿ” CVE Alert

CVE-2026-8163

UNKNOWN 0.0

Infility Global < 2.15.19 - Subscriber+ SQL Injection via order Parameter

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Infility Global WordPress plugin before 2.15.19 does not properly sanitize and escape some parameters before using them in SQL statements, leading to a SQL Injection vulnerability exploitable by authenticated users with Subscriber-level access and above.

Vendor unknown
Product infility global
Published Jun 23, 2026
Stay Ahead of the Next One

Get instant alerts for unknown infility global

Be the first to know when new unknown vulnerabilities affecting unknown infility global are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / Infility Global
0 < 2.15.19

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/e471516a-6f43-4a89-8486-7a638845e197/

Credits

TRAN THE LONG WPScan