SQL Injection Vulnerability in WP Links Page by Rico Macchi
CVE-2025-30998
8.5HIGH
What is CVE-2025-30998?
A vulnerability has been identified in the WP Links Page plugin developed by Rico Macchi, which allows attackers to execute arbitrary SQL commands through improper neutralization of special elements in SQL queries. This could lead to unauthorized access to sensitive data, manipulation of the database, and detrimental effects on the integrity of the web application. The issue affects versions from n/a up to 4.9.6, posing a significant risk to WordPress sites utilizing this plugin.
Affected Version(s)
WP Links Page <= 4.9.6