Guaven develops a focused SQL charting and reporting product that processes user-supplied queries and visualization parameters. The observed vulnerability signal centers on SQL injection in the chart-builder component, reflecting the inherent risks of constructing dynamic database queries from untrusted input. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Guaven over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-4079MEDIUM The SQL Chart Builder WordPress plugin before 2.3.8 does not properly escape user input as it is concatened to SQL queries, making it possible for attackers to conduct SQL Injectio | Apr 7, 2026 | 6.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Guaven.
Media articles that mention a CVE ID that affects a product developed by Guaven — matched by CVE ID, not by vendor name.