CRITICAL
9.3 CVE-2026-39795 Published 6 Oct 2026
SendPress Newsletters WordPress Plugin SQL Injection Vulnerability
Worried this affects your website?
SendPress Newsletters is affected by an unauthenticated SQL injection vulnerability.
Versions up to and including 1.26.1.20 are vulnerable.
Reference: CVE-2026-39795 on NVD
← Back to Security News