CVE-2025-13000
02.12.2025, 06:15
The db-access WordPress plugin through 0.8.7 does not have authorization in an AJAX action, allowing any authenticated users, such as subscriber to perform SQLI attacksEnginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.