Skip to main content
Loading…
    CVE-2026-5207 — The LifterLMS plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 9.2.1. This is due to insufficient escaping on the user suppli — CVE Database · The Intelligence Room