CVE-2026-6806

CVE-2026-6806 published: The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'stm_lat/stm_lng' parameter in all versions up to, and including, 1.4.109 due to insufficient escaping on the user supplied...

View full NVD advisory → ← Back to CVE watch