
CVE-2026-15205 The Paymob for WooCommerce WordPress plugin before 4.1.9 does not properly sanitise a client-supplied identifier before using it in a SQL query within its public, una… https://www.cve.org/CVERecord?id=CVE-2026-15205
Post summary
The CVE describes a SQL injection flaw in the Paymob for WooCommerce WordPress plugin caused by insufficient input sanitisation; no exploitation evidence, PoC, or patch information is provided.

