First published: Fri Feb 07 2025(Updated: )
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in sudipto Link to URL / Post allows Blind SQL Injection. This issue affects Link to URL / Post: from n/a through 1.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress | <=1.3 | |
WordPress | <=1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25116 has a high severity due to its potential for blind SQL injection attacks.
To fix CVE-2025-25116, upgrade your sudipto Link to URL / Post plugin to version 1.4 or later.
CVE-2025-25116 affects sudipto Link to URL / Post versions up to and including 1.3.
CVE-2025-25116 is categorized as an SQL Injection vulnerability.
Yes, CVE-2025-25116 can affect WordPress installations using versions of the Link to URL / Post plugin up to and including 1.3.