Skip to main content
Loading…
    CVE-2025-9947 — The Custom 404 Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘path’ parameter in all versions up to, and including, 3.12.0 due to insufficient escaping on the user supplie — CVE Database · The Intelligence Room