SQL Injection Vulnerability in LambertGroup Radio Player Shoutcast & Icecast Plugin
CVE-2025-32306
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 16 May 2025
What is CVE-2025-32306?
A vulnerability has been identified in the LambertGroup Radio Player Shoutcast & Icecast WordPress Plugin, which allows for SQL Injection through improper neutralization of special elements in SQL commands. This flaw can be exploited to execute blind SQL queries, potentially compromising the integrity of the database and exposing sensitive information stored in it. Users of the impacted versions should update their plugins to mitigate this risk and protect their WordPress sites from potential attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Radio Player Shoutcast & Icecast WordPress Plugin <= 4.4.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved