CVE · High

CVE-2026-56051 — TablePress – Tables in WordPress made easy [tablepress] < 3.3.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-56051 TablePress – Tables in WordPress made easy [tablepress] < 3.3.2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') High 7.1 < 3.3.2 3.3.2 2026-06-25

CVE-2026-56051

The TablePress plugin for WordPress contains a flaw allowing malicious scripts to be injected into pages through unvalidated input, which can then be executed by users who click on manipulated links without needing authentication. This vulnerability affects versions of the plugin up to and including 3.3.1. The issue arises from inadequate measures taken to prevent or sanitize potentially hazardous user input.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.