CVE-2025-32550: Clickandpledge Click & Pledge Connect Plugin
High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickandPledge Click & Pledge Connect Plugin allows SQL Injection. This issue affects Click & Pledge Connect Plugin: from 2.24080000 through WP6.6.1.
Affected products
- Clickandpledge Click & Pledge Connect Plugin
Published 2025-04-09. Last modified 2026-06-17.