CVE-2025-28986 Information

Description

Cross-Site Request Forgery (CSRF) vulnerability in Webaholicson Epicwin Plugin allows SQL Injection. This issue affects Epicwin Plugin: from n/a through 1.5.

Reference

https://patchstack.com/database/wordpress/plugin/epicwin-subscribers/vulnerability/wordpress-epicwin-plugin-plugin-1-5-csrf-to-sql-injection-vulnerability?_s_id=cve

Share on: