


Perceptive Security
SOC/SIEM Consultancy

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 TableOn posts-table-filterable allows Blind SQL…
Published:
26 mei 2026 om 22:00:00
Alert date:
27 mei 2026 om 15:06:57
Source:
nvd.nist.gov
Web Technologies
A SQL injection vulnerability (CVE-2026-42755) has been identified in the RealMag777 TableOn WordPress plugin. The vulnerability allows for blind SQL injection attacks through improper neutralization of special elements used in SQL commands. The issue affects TableOn plugin versions up to and including 1.0.5.1. This vulnerability enables attackers to execute malicious SQL queries against the database, potentially leading to unauthorized data access or manipulation. The plugin's posts-table-filterable component is specifically affected by this security flaw.
Technical details
Mitigation steps:
Affected products:
RealMag777 TableOn
TableOn WordPress Plugin
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-42755
https://patchstack.com/database/Wordpress/Plugin/posts-table-filterable/vulnerability/wordpress-tableon-plugin-1-0-5-1-sql-injection-vulnerability?_s_id=cve
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
