CVE-2025-32297 is an SQL Injection vulnerability affecting quantumcloud Simple Link Directory versions up to and including 14.7.3. This high-severity flaw (CVSS 8.5) allows an authenticated attacker to execute arbitrary SQL commands, potentially leading to data compromise. While there is no known active exploitation, public exploit code, or significant community discussion, its high FAUCET Risk Score of 81/100 indicates a substantial risk. Organizations using affected versions should prioritize patching to mitigate potential data breaches.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, <= 14.8.1CPE match | cpe:2.3:a:quantumcloud:simple_link_directory:*:*:*:*:*:wordpress:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.