VYPR

PickPlugins Question Answer

by WordPress

CVEs (1)

  • CVE-2026-10207HigJul 28, 2026
    risk 0.00cvss 7.5epss 0.00

    The PickPlugins Question Answer plugin for WordPress is vulnerable to SQL Injection in versions up to and including 1.2.73. This is due to insufficient sanitization of user-supplied input via the 'id' GET parameter in the user profile template combined with the use of…