PatchSiren

Moosocial CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Moosocial CVE published 2026-05-25

CVE-2018-25371

CVE-2018-25371 documents a blind SQL injection vulnerability in mooSocial Store Plugin version 2.6. The vulnerability exists in the product parameter used within URL rewrite functionality, allowing unauthenticated attackers to inject malicious SQL code. Successful exploitation enables database manipulation through boolean-based blind, time-based blind, or stacked query techniques, potentially leading to u [truncated]