CVE-2025-30523

CVSS 3.1 Score 7.6 of 10 (high)

Details

Published Mar 24, 2025
Updated: Mar 27, 2025
CWE ID 89

Summary

CVE-2025-30523 is an SQL Injection vulnerability affecting Marcel-NL Super Simple Subscriptions. The flaw arises from the application's failure to adequately neutralize special elements in SQL commands, potentially allowing malicious SQL injection. This issue puts versions 1.1.0 and below at risk. Attackers could exploit this vulnerability to execute arbitrary SQL commands and access, modify, or delete sensitive data. To mitigate this risk, users are urged to upgrade to the latest, secure version of Super Simple Subscriptions as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share