CVE-2026-89236: SQL Injection Vulnerability in SaveTo Wishlist Lite WordPress Plugin
A SQL injection vulnerability exists in the SaveTo Wishlist Lite WordPress plugin before version 1.1.5. Unauthenticated attackers can exploit this vulnerability to append additional SQL queries and extract sensitive information from the database. The vulnerability has a CVSS score of 8.6, indicating high severity.