This issue affects Visualizer: from n/a through 4.0.1.
Project Subscriptions
No advisories yet.
Solution
Update the WordPress Visualizer plugin to the latest available version (at least 4.0.2).
Workaround
No workaround given by the vendor.
Mon, 03 Aug 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Contributor SQL Injection in Visualizer <= 4.0.6 versions. | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle Visualizer allows Blind SQL Injection. This issue affects Visualizer: from n/a through 4.0.1. |
| Title | WordPress Visualizer plugin <= 4.0.6 - SQL Injection vulnerability | WordPress Visualizer plugin <= 4.0.1 - SQL Injection vulnerability |
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jul 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Themeisle
Themeisle visualizer Wordpress Wordpress wordpress |
|
| Vendors & Products |
Themeisle
Themeisle visualizer Wordpress Wordpress wordpress |
Thu, 23 Jul 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Contributor SQL Injection in Visualizer <= 4.0.6 versions. | |
| Title | WordPress Visualizer plugin <= 4.0.6 - SQL Injection vulnerability | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-03T09:14:14.010Z
Reserved: 2026-07-22T08:54:08.234Z
Link: CVE-2026-65526
Updated: 2026-07-23T15:53:54.413Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-30T07:15:04Z