module

WordPress Depicter Plugin SQL Injection (CVE-2025-2011)

Disclosed
May 8, 2025

Description

The Slider & Popup Builder by Depicter plugin for WordPress
is vulnerable to unauthenticated SQL injection via the 's' parameter
in admin-ajax.php.
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.