WordPress security by component
Pro Like Button
Pro Like Button (pro-like-button) is a WordPress plugin with 1 published CVE record in this archive. The latest tracked vulnerability was published Oct 01, 2026; an upstream CVSS base score is still pending.
Plugin slug:
pro-like-buttonLatest vulnerability
CVE-2026-89296: Pro Like Button: SQL injection
The Pro Like Button WordPress plugin before 2.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. The authoritative export identifies the fixed release as 2.0.
| Safe version |
|
||
|---|---|---|---|
| Oct 01, 2026 |
CVE-2026-89296
Pro Like Button: SQL injection
The Pro Like Button WordPress plugin before 2.0 does not properly sanitize and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks. The authoritative export identifies the fixed release as 2.0.
|
2.0 |
CVEPending
NVDPending
|