← WordPress Vulnerabilities
WordPress security by component

WPNakama – Team and multi-Client Collaboration, Editorial and Project Management

WPNakama – Team and multi-Client Collaboration, Editorial and Project Management is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Feb 18, 2026; the highest CVE/CNA score is 7.5.

Plugin slug: wpnakama

CVE-2026-2495: WPNakama – Team and multi-Client Collaboration, Editorial and Project Management: SQL injection

WPNakama – Team and multi-Client Collaboration, Editorial and Project Management is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.

PublishedFeb 18, 2026
Safe version guidanceSee mitigation notes
Safe version
Feb 18, 2026 CVE-2026-2495
WPNakama – Team and multi-Client Collaboration, Editorial and Project Management: SQL injection
WPNakama – Team and multi-Client Collaboration, Editorial and Project Management is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.5
NVDPending
Dec 12, 2025 CVE-2025-14068
WPNakama: SQL injection
WPNakama is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.5
NVDPending