CVE-2025-13001
02.12.2025, 06:15
The donation WordPress plugin through 1.0 does not sanitize and escape a parameter before using it in a SQL statement, allowing high privilege users, such as admin to perform SQL injection attacksEnginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.