Known vulnerabilities in Query Wrangler
Query Wrangler provides an intuitive interface for creating complex WP queries as shortcodes and widgets. UI based on Drupal Views.
5Reported vulnerabilities
8.8Highest CVSS score
1.5.58Latest version
700+Active installs
What to do now
Update Query Wrangler to 1.5.58 or later.
5 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-73992 | High | 0.7% | 1.5.57 and earlier | 1.5.58 |
August 19, 2026 |
| CVE-2026-14498 | High | 0.5% | 0 to 1.5.57 (inclusive) | 1.5.58 |
August 16, 2026 |
| CVE-2023-30779 | Medium | 0.4% | 1.5.51 and earlier | 1.5.52 |
April 19, 2023 |
| CVE-2026-65491 | Medium | 0.3% | 1.5.57 and earlier | 1.5.58 |
July 22, 2026 |
| CVE-2025-31779 | Medium | 0.2% | 1.5.54 and earlier | 1.5.55 |
April 1, 2025 |