CVE-2026-95865 | Beaver Builder Page Builder Plugin up to 2.11.0.5 on WordPress AJAX Endpoint fields[][value] sql injection (EUVD-2026-91875)

SecurityVulns

A vulnerability was found in Beaver Builder Page Builder Plugin up to 2.11.0.5 on WordPress. It has been rated as critical. Affected by this vulnerability is an unknown functionality of the component AJAX Endpoint. Performing a manipulation of the argument fields[][value] results in sql injection.

This vulnerability is cataloged as CVE-2026-95865. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More