CRITICAL
9.3 CVE-2026-96328 Published 9 Oct 2026
JNews Pay Writer WordPress Plugin Blind SQL Injection Vulnerability
Worried this affects your website?
A vulnerability has been reported in JNews - Pay Writer (jnews-pay-writer), a WordPress plugin by jegtheme. The plugin fails to properly neutralize special elements used in an SQL command, leading to a Blind SQL Injection flaw.
This issue affects JNews - Pay Writer from n/a through 12.0.1.
- Affected versions: from n/a through 12.0.1
Reference: CVE-2026-96328 on NVD
← Back to Security News