CVE-2025-4204 | Ultimate Auction Pro Plugin up to 1.5.2 on WordPress auction_id sql injection
A vulnerability was found in Ultimate Auction Pro Plugin up to 1.5.2 on WordPress. It has been declared as critical. This vulnerability affects unknown code. The manipulation of the argument auction_id leads to sql injection.
This vulnerability was named CVE-2025-4204. The attack can be initiated remotely. There is no exploit available.