CVE-2025-13922 | Tag, Category, and Taxonomy Manager Plugin up to 3.40.1 on WordPress AJAX Endpoint existing_terms_orderby sql injection (EUVD-2025-201512)
A vulnerability marked as critical has been reported in Tag, Category, and Taxonomy Manager Plugin up to 3.40.1 on WordPress. This vulnerability affects unknown code of the component AJAX Endpoint. This manipulation of the argument existing_terms_orderby causes sql injection.
This vulnerability appears as CVE-2025-13922. The attack may be initiated remotely. There is no available exploit.