Vulnerabilities > SQL Injection: Hibernate
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-03-07 | CVE-2025-0959 | SQL Injection: Hibernate vulnerability in Imithemes Eventer The Eventer - WordPress Event & Booking Manager Plugin plugin for WordPress is vulnerable to SQL Injection via the reg_id parameter in all versions up to, and including, 3.9.9.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 6.5 |