Critical severity9.8NVD Advisory· Published Feb 8, 2021· Updated Jun 17, 2026
CVE-2021-26754
CVE-2021-26754
Description
wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order[0][dir] SQL injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- wpDataTables/wpDataTablesdescription
Patches
Vulnerability mechanics
References
3- n4nj0.github.io/advisories/wordpress-plugin-wpdatatables-i/nvdExploitThird Party Advisory
- wordpress.org/plugins/wpdatatables/nvdRelease NotesThird Party Advisory
- wpdatatables.com/help/whats-new-changelog/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.