Skip to main content
Loading…
    CVE-2025-10045 — The onOffice for WP-Websites plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 6.5.1 due to insufficient escaping on the user — CVE Database · The Intelligence Room