CVE-2025-22553

CVSS 3.1 Score 9.3 of 10 (high)

Details

Published Jan 21, 2025
CWE ID 89

Summary

CVE-2025-22553 is an SQL Injection vulnerability affecting Multiple Carousel, a component used in various applications. Hackers can exploit this issue by injecting malicious SQL commands into input fields, potentially gaining unauthorized access to sensitive data or even administrative control. The vulnerability exists from version n/a up to 2.0, putting numerous systems at risk. Developers are urged to update to the latest version or implement appropriate security measures to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share