SQL Injection Risk in MojoJoomla WPGYM by MojoJoomla
CVE-2025-32574
8.5HIGH
What is CVE-2025-32574?
A security vulnerability in the MojoJoomla WPGYM plugin allows malicious actors to perform SQL injection attacks. This vulnerability arises from improper neutralization of special elements in SQL commands, enabling attackers to manipulate queries executed by the backend database. It primarily affects WPGYM from versions prior to 65.0, posing serious risks to data integrity and application security.
Affected Version(s)
WPGYM <= 65.0