CVE-2025-26971: Ays-Pro Poll Maker

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ays Pro Poll Maker poll-maker allows Blind SQL Injection.This issue affects Poll Maker: from n/a through <= 5.6.5.

Affected products

  • Ays-Pro Poll Maker: before 5.6.6 (fixed in 5.6.6)

Published 2025-02-25. Last modified 2026-06-17.