Title: SQL Injection Vulnerability
Last modified: September 16, 2026

---

# SQL Injection Vulnerability

 *  [dooza](https://wordpress.org/support/users/dooza/)
 * (@dooza)
 * [2 weeks, 5 days ago](https://wordpress.org/support/topic/sql-injection-vulnerability-21/)
 * Hi there,
 * Patchstack has found an SQL vulnerability with this plugin: [https://patchstack.com/database/wordpress/plugin/wp-megamenu/vulnerability/wordpress-wp-mega-menu-plugin-1-4-2-sql-injection-vulnerability](https://patchstack.com/database/wordpress/plugin/wp-megamenu/vulnerability/wordpress-wp-mega-menu-plugin-1-4-2-sql-injection-vulnerability)
 * Are there any plans to address it? Or is this plugin a dead duck?

You must be [logged in](https://login.wordpress.org/?redirect_to=https%3A%2F%2Fwordpress.org%2Fsupport%2Ftopic%2Fsql-injection-vulnerability-21%2F%3Foutput_format%3Dmd&locale=en_US)
to reply to this topic.

 * ![](https://ps.w.org/wp-megamenu/assets/icon-256x256.jpg?rev=2451874)
 * [WP Mega Menu](https://wordpress.org/plugins/wp-megamenu/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wp-megamenu/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wp-megamenu/)
 * [Active Topics](https://wordpress.org/support/plugin/wp-megamenu/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wp-megamenu/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wp-megamenu/reviews/)

 * 0 replies
 * 1 participant
 * Last reply from: [dooza](https://wordpress.org/support/users/dooza/)
 * Last activity: [2 weeks, 5 days ago](https://wordpress.org/support/topic/sql-injection-vulnerability-21/)
 * Status: not resolved