CVE-2026-41555

Weblizar – WordPress Themes & Plugin Newsletter Subscription Form – User Subscriptions Form, Capture Email

Published 6 Oct 2026 · updated 6 Oct 2026 · Deferred

9.3 Critical · CVSS 3.1, patchstack.com

Description

Unauthenticated SQL Injection in Newsletter Subscription Form – User Subscriptions Form, Capture Email <= 1.5.9 versions.

References