CVE-2026-93368

CVE-2026-93368 published: The Rename wp-login.php to anything you want plugin for WordPress is vulnerable to time-based SQL Injection via 'log' (Username) Parameter in all versions up to, and including, 2.0.1 due to insufficient escaping on the user supplied parameter and lack of su...

View full NVD advisory → ← Back to CVE watch