cleantalk
Vulnerabilities and Security Researches

WP Multi Store Locator, CVE-2025-26974

CVE, Research URL

CVE-2025-26974

Published on
Feb 25, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPExperts.io WP Multi Store Locator allows Blind SQL Injection. This issue affects WP Multi Store Locator: from n/a through 2.5.1.
Affected versions
Min -, max 2.5.2.
Status
vulnerable