CVE-2025-13000
EUVD-2025-20019002.12.2025, 06:15
The db-access WordPress plugin through 0.8.7 does not have authorization in an AJAX action, allowing any authenticated users, such as subscriber to perform SQLI attacks
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jimbob1953 | db-access | 𝑥 ≤ 0.8.7 |
𝑥
= Vulnerable software versions