- Description
- Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hiren.sabd WP Music Player wp-music-player allows SQL Injection.This issue affects WP Music Player: from n/a through <= 1.3.
- Source
- audit@patchstack.com
- NVD status
- Deferred
CVSS 3.1
- Type
- Secondary
- Base score
- 7.6
- Impact score
- 4.7
- Exploitability score
- 2.3
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
- Severity
- HIGH
- audit@patchstack.com
- CWE-89
- Hype score
- Not currently trending
๐ #CyberSecurity CVE-2025-22536 (React2Shell): Automated Credential Harvesting in Next.js Apps โโฆ "The security community is currently tracking an active threat cluster,โฆ" ๐ https://t.co/7sdv2hM8ZQ #CyberSecurity #ThreatIntel #penetrationtesting #redteam
@SecurityAr58409
17 Apr 2026
156 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
๐ #CyberSecurity CVE-2025-22536 (React2Shell): Automated Credential Harvesting in Next.js Apps โโฆ "Active exploitation of vulnerable Next.js apps via CVE-2025-22536โฆ" ๐ https://t.co/7sdv2hM8ZQ #CyberSecurity #ThreatIntel #penetrationtesting #redteam #offensivesecu
@SecurityAr58409
16 Apr 2026
76 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-22536 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hiren Patel WP Music Player allows SQL Injection.This issue affeโฆ https://t.co/dW6RoimYM2
@CVEnew
7 Jan 2025
213 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes