VYPR

Recordbrowser

by WordPress

CVEs (1)

  • CVE-2026-89232Oct 11, 2026
    risk 0.00cvss —epss —

    The Recordbrowser WordPress plugin through 1.1.7 does not sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated attackers to append additional SQL queries and extract sensitive information from the database.