CVE-2025-48089

All FrameworksWordPressCWE-89CVE-2025-48089

CVE-2025-48089

State: PUBLISHED · Published: 2025-11-06 · Updated: 2026-04-01 · Assigner: Patchstack
Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Rainbow-Themes Education WordPress Theme | HiStudy histudy allows SQL Injection.This issue affects Education WordPress Theme | HiStudy: from n/a through < 3.1.0.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2025/48xxx/CVE-2025-48089.json