A vulnerability has been found in CatFolders Plugin up to 2.5.2 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the component CSV Import. The manipulation leads to sql injection.

This vulnerability is listed as CVE-2025-9776. The attack may be initiated remotely. There is no available exploit.