CVE-2026-56052EPSS p30.0%
CVE-2026-56052CVE-2026-56052
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Funnel Builder by FunnelKit allows Blind SQL Injection.
This issue affects Funnel Builder by FunnelKit: from n/a through 3.15.0.5.
Scoring
| CVSS | 7.6 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L |
| EPSS | 0.38% probability of exploitation · percentile 30.0% · 2026-10-05T12:00:23Z |
| Last modified | 2026-06-25 |