
CVE-2026-12743 The affiliate-toolkit – Multi-Network Affiliate & Amazon Product Display plugin for WordPress is vulnerable to time-based SQL Injection via the 'orderby' parameter in… https://www.cve.org/CVERecord?id=CVE-2026-12743
Post summary
A new vulnerability (CVE‑2026‑12743) affecting the Multi‑Network Affiliate & Amazon Product Display plugin has been disclosed as a time‑based SQL injection flaw via the 'orderby' parameter.
