CVE-2025-1311 | wclovers WooCommerce Multivendor Marketplace Plugin up to 1.6.2 on WordPress update_delivery_status ID sql injection
A vulnerability was found in wclovers WooCommerce Multivendor Marketplace Plugin up to 1.6.2 on WordPress. It has been rated as critical. Affected by this issue is the function update_delivery_status. The manipulation of the argument ID leads to sql injection.
This vulnerability is handled as CVE-2025-1311. The attack may be launched remotely. There is no exploit available.