CVE-2025-10048 | wphocus My auctions allegro Plugin up to 3.6.31 on WordPress order sql injection (EUVD-2025-33816)
A vulnerability marked as critical has been reported in wphocus My auctions allegro Plugin up to 3.6.31 on WordPress. The impacted element is an unknown function. This manipulation of the argument order causes sql injection.
This vulnerability is handled as CVE-2025-10048. The attack can be initiated remotely. There is not any exploit available.