Skip to content

CVE-2026-2313

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
February 12, 2026
Last Seen
March 11, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical SQL injection vulnerability, tracked as CVE-2026-2313, has been discovered in the Ally WordPress plugin, which is used on over 400,000 sites. This flaw allows unauthenticated attackers to inject SQL commands via a user-supplied URL parameter, potentially leading to the theft of sensitive...

Google has released a critical security update for Chrome, addressing two high-severity vulnerabilities that could allow arbitrary code execution and denial-of-service attacks. Users on Windows, macOS, and Linux are affected, with the browser version updated to 144.0.7559.132/.133. The update is bei...

Public Exploits

Checking GitHub for proof-of-concept code…