CVE-2025-46242SQL Injection in Watu Quiz

CWE-89SQL Injection3 documents3 sources
Severity
4.9MEDIUMNVD
EPSS
0.2%
top 58.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 22

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz watu allows SQL Injection.This issue affects Watu Quiz: from n/a through <= 3.4.3.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages2 packages

CVEListV5bob/watu_quiz3.4.3

🔴Vulnerability Details

2
CVEList
WordPress Watu Quiz plugin <= 3.4.3 - SQL Injection Vulnerability2025-04-22
GHSA
GHSA-qqjf-wq8v-xgch: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bob Watu Quiz allows SQL Injection2025-04-22
CVE-2025-46242 — SQL Injection in Kibokolabs Watu Quiz | cvebase