CVE-2025-14124 - Team < 5.0.11 - Unauthenticated SQLi

CVE-2025-14124 - Team < 5.0.11 - Unauthenticated SQLi

CVE ID : CVE-2025-14124 Published : Jan. 5, 2026, 6:16 a.m. | 43 minutes ago Description : The Team WordPress plugin before 5.0.11 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Published
Jan. 5, 2026
Affected Product: WordPress
Impact: SQL injection

Source: Telegram CVE Monitor