CVE-2025-7826 | Testimonial Plugin up to 2.3 on WordPress Shortcode iNICtestimonial sql injection
A vulnerability was found in Testimonial Plugin up to 2.3 on WordPress. It has been rated as critical. Impacted is the function iNICtestimonial of the component Shortcode Handler. This manipulation causes sql injection.
The identification of this vulnerability is CVE-2025-7826. It is possible to initiate the attack remotely. There is no exploit available.