CVE-2026-13119 | roundupwp Events Calendar Plugin up to 3.2 on WordPress rtec_records_edit AJAX Action update_entry standard sql injection

SecurityVulns

A vulnerability described as critical has been identified in roundupwp Events Calendar Plugin up to 3.2 on WordPress. The affected element is the function RTEC_Db_Admin::update_entry of the component rtec_records_edit AJAX Action. Such manipulation of the argument standard leads to sql injection.

This vulnerability is referenced as CVE-2026-13119. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More