CVE-2026-10207 | PickPlugins Question Answer Plugin up to 1.2.73 on WordPress qa_user_profile_card ID sql injection

SecurityVulns

A vulnerability was found in PickPlugins Question Answer Plugin up to 1.2.73 on WordPress. It has been classified as critical. The affected element is the function qa_user_profile_card. Performing a manipulation of the argument ID results in sql injection.

This vulnerability is cataloged as CVE-2026-10207. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More