CVE-2025-3951 – WordPress WP-Optimize SQL Injection Vulnerability

CVE ID : CVE-2025-3951

Published : June 2, 2025, 6:15 a.m. | 2 hours, 8 minutes ago

Description : The WP-Optimize WordPress plugin before 4.2.0 does not properly escape user input when checking image compression statuses, which could allow users with the administrator role to conduct SQL Injection attacks in the context of Multi-Site WordPress configurations.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

نوشته های مشابه