Security Advisory

CVE-2026-11590

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-30 06:00:01
Last updated 2026-06-30 14:23:36
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The WP Support Plus Responsive Ticket System WordPress plugin through 9.1.2 does not sanitize user-supplied array keys before using them in a SQL statement, allowing unauthenticated users to perform SQL injection attacks.