CVE-2026-82182: Unknown Wpvivid — Backup, Migration & Staging
Medium severity, CVSS 4.1. EPSS: 0.3% chance of exploitation in the next 30 days.
The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.133 does not sanitise a user supplied list of identifiers before using it in a SQL query, allowing administrators to perform SQL injection attacks.
Affected products
- Unknown Wpvivid — Backup, Migration & Staging: before 0.9.133 (fixed in 0.9.133)
Published 2026-09-02. Last modified 2026-09-03.