CVE-2025-11972 | Tag, Category, and Taxonomy Manager Plugin up to 3.40.0 on WordPress post_types sql injection (EUVD-2025-38356)
A vulnerability was found in Tag, Category, and Taxonomy Manager Plugin up to 3.40.0 on WordPress and classified as critical. Affected by this issue is some unknown functionality. Executing manipulation of the argument post_types can lead to sql injection.
This vulnerability is tracked as CVE-2025-11972. The attack can be launched remotely. No exploit exists.