CVE-2026-57772: Wp Inventory Manager

High severity, CVSS 8.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Inventory WP Inventory Manager wp-inventory-manager allows Blind SQL Injection.This issue affects WP Inventory Manager: from n/a through <= 2.4.0.

Affected products

  • Wp Inventory Wp Inventory Manager: up to and including 2.4.0

Published 2026-07-13. Last modified 2026-07-13.