Unrated severityNVD Advisory· Published Jul 31, 2026· Updated Jul 31, 2026
Check & Log Email < 2.0.15 - Admin+ SQL Injection via d and s Parameters
CVE-2026-14554
Description
The Check & Log Email WordPress plugin before 2.0.15 does not properly sanitize and escape parameters before using them in SQL queries, allowing users with administrator privileges to perform SQL injection attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <2.0.15
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/7b39bae3-41a2-4862-b7c3-1a386273d600/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.