CVE-2026-54809
VillaTheme GIFT4U
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VillaTheme GIFT4U allows Blind SQL Injection. This issue affects GIFT4U: from n/a through 1.0.10.
- CVSS
- 9.3
- EPSS
- 0.23% 14.5% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.17