SQL Injection Vulnerability in 101news Affects Multiple Versions
CVE-2025-1875
9.3CRITICAL
What is CVE-2025-1875?
A SQL injection vulnerability has been identified in the 101news plugin, specifically affecting versions 1.0 and above through the 'searchtitle' parameter in search.php. This flaw could allow an attacker to manipulate SQL queries, potentially leading to unauthorized access to sensitive data. It is essential for users and administrators to update their installations and implement security measures to safeguard against exploitation.
Affected Version(s)
101news 1.0