CVE-2025-2203
EUVD-2025-1521015.05.2025, 20:16
The FunnelKit WordPress plugin before 3.10.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| funnelkit | funnel_builder | 𝑥 < 3.10.2 |
𝑥
= Vulnerable software versions