CVE-2026-42712: Qode Tours

High severity, CVSS 8.5.

Subscriber SQL Injection in Qode Tours <= 3.1.3.2 versions.

Affected products

  • Qode Qode Tours: up to and including 3.1.3.2

Published 2026-10-10. Last modified 2026-10-10.