CRITICAL
9.3 CVE-2026-66609 Published 20 Aug 2026
TheGem Elementor SQL Injection
Worried this affects one of your servers?
TheGem, a WordPress theme using Elementor, is affected.
Unauthenticated SQL Injection vulnerability exists in versions up to 5.12.3.
Reference: CVE-2026-66609 on NVD
← Back to Security News