CVE-2026-49776 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
CVE-2026-49776 is a vulnerability tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed June 16, 2026; most recent activity June 16, 2026.
A critical unauthenticated SQL injection vulnerability (CVE-2026-49776) has been identified in the GPTranslate plugin for WordPress, affecting versions 2.32.6 and earlier. This flaw allows attackers to execute arbitrary…
CVE-2026-49776 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
The most recent intelligence report mentioning CVE-2026-49776 on ThreatCluster is dated June 16, 2026.
Across ThreatCluster reporting, CVE-2026-49776 most frequently co-occurs with Sql Injection, Cwe-89 - SQL Injection, T1190 - Exploit Public-Facing Application, GPTranslate, WordPress.
The most significant recent cluster is “Critical SQL Injection Vulnerability in GPTranslate Plugin (CVE-2026-49776)” (3 articles · Updated June 16, 2026). CVE-2026-49776 appears across 1 threat cluster in total, listed above with sources.
CVE-2026-49776 appears in 3 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.