cleantalk
Vulnerabilities and Security Researches

Premium Packages – Sell Digital Products Securely, CVE-2025-24659

CVE, Research URL

CVE-2025-24659

Published on
Jan 24, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WordPress Download Manager Premium Packages allows Blind SQL Injection. This issue affects Premium Packages: from n/a through 5.9.6.
Affected versions
max 5.9.7.
Status
vulnerable