cleantalk
Vulnerabilities and Security Researches

Click & Pledge Connect Plugin, CVE-2025-28983

CVE, Research URL

CVE-2025-28983

Published on
Jul 04, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickandPledge Click & Pledge Connect allows Privilege Escalation. This issue affects Click & Pledge Connect: from 25.04010101 through WP6.8.
Affected versions
Min -, max 25.04010101-WP6.8.
Status
vulnerable