CVE-2026-61685 | fecommunity ReactPress up to 3.6.x API List Endpoint query parameter name injection

SecurityVulns

A vulnerability was found in fecommunity ReactPress up to 3.6.x and classified as problematic. This affects an unknown function of the component API List Endpoint. Executing a manipulation of the argument query parameter name can lead to injection.

This vulnerability is registered as CVE-2026-61685. It is possible to launch the attack remotely. No exploit is available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More