A vulnerability, which was classified as critical, was found in wisdomlogix Fonts Manager Plugin up to 1.2 on WordPress. This issue affects some unknown processing of the component Parameters Handler. The manipulation of the argument fmcfIdSelectedFnt results in sql injection.
This vulnerability was named CVE-2026-1800. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.