This issue affects Media LIbrary Assistant: from n/a through 3.35.
Project Subscriptions
No advisories yet.
Solution
Update the WordPress Media LIbrary Assistant Plugin to the latest available version (at least 3.36).
Workaround
No workaround given by the vendor.
Thu, 18 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Davidlingren
Davidlingren media Library Assistant Wordpress Wordpress wordpress |
|
| Vendors & Products |
Davidlingren
Davidlingren media Library Assistant Wordpress Wordpress wordpress |
Thu, 18 Jun 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David Lingren Media LIbrary Assistant allows Blind SQL Injection. This issue affects Media LIbrary Assistant: from n/a through 3.35. | |
| Title | WordPress Media LIbrary Assistant plugin <= 3.35 - SQL Injection vulnerability | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-18T16:10:48.523Z
Reserved: 2026-06-18T09:31:56.471Z
Link: CVE-2026-56012
Updated: 2026-06-18T15:21:56.829Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-18T20:00:14Z