CVE-2026-1317 | WP Import Plugin up to 7.36 on WordPress Filename file_name sql injection
A vulnerability, which was classified as critical, has been found in WP Import Plugin up to 7.36 on WordPress. This affects an unknown function of the component Filename Handler. Performing a manipulation of the argument file_name results in sql injection.
This vulnerability is identified as CVE-2026-1317. The attack can be initiated remotely. There is not any exploit available.