CVE-2025-58448 | rAthena PartyBooking WorldName sql injection (GHSA-x99j-36m7-4vv7)
A vulnerability identified as critical has been detected in rAthena. Affected is an unknown function of the component PartyBooking. The manipulation of the argument WorldName leads to sql injection.
This vulnerability is referenced as CVE-2025-58448. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to install a patch to address this issue.