A vulnerability was found in Sabuj Kundu CBX Bookmark & Favorite Plugin up to 2.0.4 on WordPress. It has been classified as critical. This affects an unknown part. Performing a manipulation of the argument orderby results in sql injection.

This vulnerability is identified as CVE-2025-13652. The attack can be initiated remotely. There is not any exploit available.