Vulnerability Description
The Relevanssi WordPress plugin before 4.26.0, Relevanssi Premium WordPress plugin before 2.29.0 do not sanitize and escape a parameter before using it in a SQL statement, allowing contributor and above roles to perform SQL injection attacks
CVSS Score
MEDIUM
References
- https://wpscan.com/vulnerability/bd8e27c7-8f97-4313-b16e-50ac6f0676f5/
- https://wpscan.com/vulnerability/bd8e27c7-8f97-4313-b16e-50ac6f0676f5/
FAQ
What is CVE-2025-14719?
CVE-2025-14719 is a vulnerability with a CVSS score of 4.9 (MEDIUM). The Relevanssi WordPress plugin before 4.26.0, Relevanssi Premium WordPress plugin before 2.29.0 do not sanitize and escape a parameter before using it in a SQL statement, allowing contributor and ab...
How severe is CVE-2025-14719?
CVE-2025-14719 has been rated MEDIUM with a CVSS base score of 4.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-14719?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.