
CVE-2026-12965 The Super Store Finder WordPress plugin through 7.8 does not sanitize a parameter of an unauthenticated AJAX action before using it in a SQL query, allowing unauthent… https://www.cve.org/CVERecord?id=CVE-2026-12965
Post summary
The text announces a new CVE (CVE-2026-12965) reporting that the Super Store Finder WordPress plugin is vulnerable to SQL injection due to unsanitized input in an unauthenticated AJAX action.


