CVE-2026-10207 | PickPlugins Question Answer Plugin up to 1.2.73 on WordPress qa_user_profile_card ID sql injection
A vulnerability was found in PickPlugins Question Answer Plugin up to 1.2.73 on WordPress. It has been classified as critical. The affected element is the function qa_user_profile_card. Performing a manipulation of the argument ID results in sql injection.
This vulnerability is cataloged as CVE-2026-10207. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More