CVE-2026-14920 PUBLISHED
AcyMailing < 10.11.1 - Unauthenticated SQL Injection via subscription[] Parameter
Assigner: WPScan
Reserved: 07.07.2026
Published: 02.08.2026
Updated: 02.08.2026
<h2>Summary</h2>
Product Status
| Vendor |
Unknown |
| Product |
AcyMailing |
| Versions |
Default: unaffected
- affected from 0 to 10.11.1 (excl.)
|
Credits
- Pedro Pinho finder
- WPScan coordinator
References
Problem Types