Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.3
Saasplate Core: Malicious SQL Queries Can Access Sensitive Data
CVE-2025-69309
Summary
An issue in Saasplate Core allows attackers to inject malicious SQL code, potentially exposing sensitive data. This affects users of Saasplate Core versions up to 1.2.8. To protect your data, update to the latest version of Saasplate Core as soon as possible.
Original title
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Saasplate Core saasplate-core allows Blind SQL Injection.This issue affects Saaspl...
Original description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Saasplate Core saasplate-core allows Blind SQL Injection.This issue affects Saasplate Core: from n/a through <= 1.2.8.
nvd CVSS3.1
9.3
Vulnerability type
CWE-89
SQL Injection
Published: 20 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026