cleantalk
Vulnerabilities and Security Researches

WP Multi Store Locator, CVE-2025-28898

CVE, Research URL

CVE-2025-28898

Published on
Mar 26, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NotFound WP Multistore Locator allows SQL Injection. This issue affects WP Multistore Locator: from n/a through 2.5.2.
Affected versions
Min -, max 2.5.2.
Status
vulnerable