← WordPress Vulnerabilities
WordPress security by component

Accessibility Suite by Ability, Inc

Accessibility Suite by Ability, Inc is a WordPress component with 7 published CVE records in this archive. The latest tracked vulnerability was published Apr 16, 2026; the highest CVE/CNA score is 8.5.

Plugin slug: online-accessibility

CVE-2026-3773: Accessibility Suite by Ability, Inc: SQL injection

Accessibility Suite by Ability, Inc is affected by SQL injection. Exploitation requires at least subscriber-level access. A successful request can alter database queries and expose or modify WordPress data. The published affected range is <= 4.20.

PublishedApr 16, 2026
Known safe version> 4.20
Safe version
Apr 16, 2026 CVE-2026-3773
Accessibility Suite by Ability, Inc: SQL injection
Accessibility Suite by Ability, Inc is affected by SQL injection. Exploitation requires at least subscriber-level access. A successful request can alter database queries and expose or modify WordPress data. The published affected range is <= 4.20.
> 4.20
CVE6.5
NVDPending
Jun 06, 2025 CVE-2025-30636
Accessibility Suite: A security weakness
Accessibility Suite is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.4
NVDPending
Apr 11, 2025 CVE-2025-32650
Accessibility Suite: SQL injection
Accessibility Suite is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE8.5
NVDPending
Apr 10, 2025 CVE-2025-32215
Accessibility Suite: Dangerous file upload
Accessibility Suite is affected by dangerous file upload. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
See mitigation notes
CVE6.5
NVDPending
Feb 14, 2025 CVE-2025-22698
Accessibility Suite: A security weakness
Accessibility Suite is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE6.3
NVDPending
Nov 06, 2023 CVE-2023-45830
Accessibility Suite by Online ADA: SQL injection
Accessibility Suite by Online ADA is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE8.5
NVD9.8
Nov 06, 2023 CVE-2022-47420
Accessibility Suite by Online ADA: SQL injection
Accessibility Suite by Online ADA is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE6.4
NVD9.8