What is CVE-2026-73185?
CVE-2026-73185 is an unauthenticated SQL Injection vulnerability found in NGG Smart Image Search versions prior to 4.0.0. This flaw allows an unauthenticated attacker to manipulate the database. Users should immediately update to the latest version.
Azərbaycanca: CVE-2026-73185, NGG Smart Image Search plagininin 4.0.0-dən əvvəlki versiyalarında aşkarlanmış autentifikasiyasız SQL injection zəifliyidir. Bu boşluq autentifikasiya olunmamış hücumçuya verilənlər bazasına müdaxilə etməyə imkan verir. Plagindən istifadə edənlər dərhal ən son versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
In which plugin was CVE-2026-73185 discovered, and which versions are affected?
This vulnerability was discovered in the NGG Smart Image Search plugin in versions prior to 4.0.0.
What should users do to protect against CVE-2026-73185?
Users should immediately update the NGG Smart Image Search plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.