CVE-2026-16087 | icegram Engage Plugin up to 3.1.42 on WordPress get_message_data messages[][id] sql injection
A vulnerability classified as problematic was found in icegram Engage Plugin up to 3.1.42 on WordPress. Affected by this issue is the function get_message_data. Executing a manipulation of the argument messages[][id] can lead to sql injection.
This vulnerability is registered as CVE-2026-16087. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More