SQL Injection Vulnerability in MyStyle Custom Product Designer by mystyleplatform
CVE-2025-48281
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 June 2025
What is CVE-2025-48281?
The MyStyle Custom Product Designer software by mystyleplatform contains a vulnerability that allows for the improper neutralization of special elements used in SQL commands, leading to a Blind SQL Injection. This security flaw can be exploited by attackers to manipulate the database queries executed by the application, potentially allowing for unauthorized access to sensitive data. Immediate action is recommended for users of the affected versions to secure their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MyStyle Custom Product Designer <= 3.21.1
References
EPSS Score
5% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved