🔐 CVE Alert

CVE-2026-87774

UNKNOWN 0.0

Tz Weekly Radio Schedule <= 1.8.1 - Unauthenticated SQL Injection via week

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Tz Weekly Radio Schedule WordPress plugin through 1.8.1 does not sanitize and escape a parameter before using it to build a SQL query on an AJAX action available to unauthenticated users, allowing unauthenticated attackers to perform SQL injection attacks and extract sensitive data from the database.

Vendor unknown
Product tz weekly radio schedule
Published Sep 18, 2026
Stay Ahead of the Next One

Get instant alerts for unknown tz weekly radio schedule

Be the first to know when new unknown vulnerabilities affecting unknown tz weekly radio schedule are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Unknown / Tz Weekly Radio Schedule
0 ≤ 1.8.1

References

NVD ↗ CVE.org ↗ EPSS Data ↗
wpscan.com: https://wpscan.com/vulnerability/802f208f-a3dd-4dc7-b1d2-ec455f0350f7/

Credits

Theo Antônio Da Fonseca WPScan