Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.3

Uroan Core: Malicious SQL Queries Can Be Injected

CVE-2025-69365
Summary

The Uroan Core software has a security flaw that allows hackers to inject malicious SQL commands. This could allow an attacker to access sensitive data or disrupt the website. Update to version 1.4.5 or later to fix this issue.

Original title
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Uroan Core uroan-core allows Blind SQL Injection.This issue affects Uroan Core: fr...
Original description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Uroan Core uroan-core allows Blind SQL Injection.This issue affects Uroan Core: from n/a through <= 1.4.4.
nvd CVSS3.1 9.3
Vulnerability type
CWE-89 SQL Injection
Published: 20 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026