PT-2025-52743 · WordPress · Automatorwp

Nguyen Kim Sang

·

Published

2025-12-23

·

Updated

2025-12-28

·

CVE-2025-68561

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions AutomatorWP versions through 5.2.4
Description Improper neutralization of special elements used in an SQL command allows for SQL injection. The issue affects the AutomatorWP plugin.
Recommendations Update AutomatorWP to a version later than 5.2.4.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-68561

Affected Products

Automatorwp