cleantalk
Vulnerabilities and Security Researches

WPBulky – WordPress Bulk Edit Post Types, CVE-2025-68550

CVE, Research URL

CVE-2025-68550

Published on
Dec 23, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VillaTheme WPBulky allows Blind SQL Injection.This issue affects WPBulky: from n/a through 1.1.13.
Affected versions
max 1.1.13.
Status
vulnerable