CVE-2026-57810

WordPress APIExperts Square for WooCommerce plugin <= 4.7.4 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce woosquare allows Blind SQL Injection.This issue affects APIExperts Square for WooCommerce: from n/a through <= 4.7.4.


We have discovered 201 live websites that are affected by CVE-2026-57810.

Run a Free Instant Scan




Affected Software

Product  Woosquare
Category Wordpress Plugins
Vulnerable Domains201 live websites (98% of Woosquare install base)
Vulnerable Versions
  • from 0 through 4.7.4
Vulnerable Versions Count11 versions ( 92% of all versions)



Details

  • Published - Jul 13, 2026
  • Updated - Jul 13, 2026

Credits

  • Averon Averenkov | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2026-57810
United States141 websites



Australia17 websites
Canada15 websites
GB10 websites
Japan4 websites
Cyprus3 websites
France2 websites
Brazil1 websites
Germany1 websites

Website Distribution by TLD

Number of websites using CVE-2026-57810
.com141 websites
.com.au17 websites
.org12 websites
.ca9 websites
.co.uk8 websites
.net5 websites
.co.jp1 websites
.fr1 websites
.jp1 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2026-57810

Top websites that are affected by CVE-2026-57810. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
********.org United States***,***
********************.com United States*,***,***
********.live United States*,***,***
*************.***.au Australia*,***,***
******************.com United States*,***,***
**********************.com United States*,***,***
*******.com United States*,***,***
***********.com United States*,***,***
*************.**.uk GB*,***,***
**************.**.uk United States*,***,***
See full domain list

FAQ

A total of 201 websites have been identified as vulnerable to CVE-2026-57810, based on global website indexing conducted by WebTechSurvey.
The Woosquare is affected by the CVE-2026-57810 vulnerability.
Woosquare versions up to and including 4.7.4 are vulnerable to CVE-2026-57810.