CVE-2025-1986
CVSS 3.1 Score 4.1 of 10 (medium)
Details
Published Apr 1, 2025
Summary
CVE-2025-1986 is a vulnerability affecting the Gutentor WordPress plugin before version 3.4.7. Attackers can exploit this issue by injecting malicious SQL statements, as the plugin fails to sanitize and escape user input prior to its usage in SQL queries. This vulnerability grants admins unauthorized access to sensitive data or even complete control over the affected website. It is essential for users to update the plugin to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.