Unrated severityNVD Advisory· Published Aug 29, 2026
CVE-2026-16061
CVE-2026-16061
Description
The Rest Routes WordPress plugin through 5.5.5 does not sanitize and validate a value taken from the URL of one of its public REST routes before using it in a SQL query, allowing unauthenticated attackers to perform SQL injection attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=5.5.5
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.