CVE-2026-28168: Imran Tauqeer Cubewp
High severity, CVSS 8.5. EPSS: 0.4% chance of exploitation in the next 30 days.
Subscriber SQL Injection in CubeWP <= 1.1.30 versions.
Affected products
- Imran Tauqeer Cubewp: up to and including 1.1.30
Published 2026-08-13. Last modified 2026-08-14.