CVE-2025-8767 | AnWP Football Leagues Plugin up to 0.16.17 on WordPress download_csv_players csv injection
A vulnerability has been found in AnWP Football Leagues Plugin up to 0.16.17 on WordPress and classified as critical. This vulnerability affects the function download_csv_players. The manipulation leads to csv injection.
This vulnerability was named CVE-2025-8767. The attack can be initiated remotely. There is no exploit available.