What is CVE-2026-59538?
CVE-2026-59538 is an unauthenticated SQL injection vulnerability in GamiPress plugin versions <= 7.9.7. This flaw allows a remote attacker to read the database. Immediate update of the plugin to the latest version is required.
Azərbaycanca: CVE-2026-59538 GamiPress plagininin 7.9.7 və əvvəlki versiyalarında autentifikasiyasız SQL injection zəifliyidir. Bu boşluq uzaqdan hücum edən şəxsə məlumat bazasını oxumağa imkan verir. Plagin dərhal ən son versiyaya yenilənməlidir.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which versions of the GamiPress plugin are affected by CVE-2026-59538?
This vulnerability affects GamiPress plugin versions 7.9.7 and earlier.
What can a remote attacker achieve by exploiting the unauthenticated SQL injection vulnerability CVE-2026-59538?
A remote attacker can read the database through this flaw.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.