
IntegSec@integ_sec
CVE-2026-15360: Unauthenticated SQL Injection in Ajax Load More WordPress Plugin - What It Means for Your Business and How to Respond https://hubs.li/Q04z5ZBQ0
0000035
35 followersView on X
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
The Ajax Load More WordPress plugin before 8.0.1 does not properly sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated attackers to perform time-based blind SQL injection and extract sensitive data from the database.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
NONE

CVE-2026-15360: Unauthenticated SQL Injection in Ajax Load More WordPress Plugin - What It Means for Your Business and How to Respond https://hubs.li/Q04z5ZBQ0