CVE-2026-28562 | gVectors wpForo Forum up to 2.4.14 Topics::get_topics wpfob sql injection (EUVD-2026-9111)
A vulnerability was found in gVectors wpForo Forum up to 2.4.14 and classified as critical. Affected by this vulnerability is the function Topics::get_topics. The manipulation of the argument wpfob results in sql injection.
This vulnerability is reported as CVE-2026-28562. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.