Skip to content

CVE-2026-49776

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
June 16, 2026
Last Seen
June 16, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical unauthenticated SQL injection vulnerability (CVE-2026-49776) has been identified in the GPTranslate plugin for WordPress, affecting versions 2.32.6 and earlier. This flaw allows attackers to execute arbitrary SQL queries through user-controlled input, potentially exposing sensitive data s...

Public Exploits

Checking GitHub for proof-of-concept code…