CVE-2025-25150
CVSS 3.1 Score 9.3 of 10 (high)
Details
Summary
CVE-2025-25150 is a critical SQL Injection vulnerability affecting the Stylemix uListing application from versions n/a through 2.1.6. This issue allows an attacker to execute blind SQL queries, bypassing input validations and potentially gaining unauthorized access to sensitive data. The vulnerability arises due to the application's failure to properly neutralize special elements within SQL commands, making it susceptible to SQL injection attacks. exploitation of this vulnerability could lead to data breaches or even system compromise, emphasizing the importance of prompt patching and input validation measures.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.