← WordPress Vulnerabilities
WordPress security by component

Pro Like Button

Pro Like Button (pro-like-button) is a WordPress plugin with 1 published CVE record in this archive. The latest tracked vulnerability was published Oct 01, 2026; an upstream CVSS base score is still pending.

Plugin slug: pro-like-button

CVE-2026-89296: Pro Like Button: SQL injection

The Pro Like Button WordPress plugin before 2.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. The authoritative export identifies the fixed release as 2.0.

PublishedOct 01, 2026
Known safe version2.0
Published vulnerabilities for pro-like-button
Safe version
Oct 01, 2026 CVE-2026-89296
Pro Like Button: SQL injection
The Pro Like Button WordPress plugin before 2.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. The authoritative export identifies the fixed release as 2.0.
2.0
CVEPending
NVDPending