CVE

CVE-2025-8977 — Simple Download Monitor < 3.9.34 - Simple Download Monitor < 3.9.34 – Authenticated (Contributor+) SQL Injection via order parameter in Log Export functionality

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-8977 Simple Download Monitor < 3.9.34 - Simple Download Monitor < 3.9.34 – Authenticated (Contributor+) SQL Injection via order parameter in Log Export functionality Unknown < 3.9.34 3.9.34

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.