CVE-2024-13095: Wptriggers Wp Triggers Lite

Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.

The WP Triggers Lite WordPress plugin through 2.5.3 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks

Affected products

  • Wptriggers Wp Triggers Lite: up to and including 2.5.3

Published 2025-01-27. Last modified 2026-06-17.