WordPress Sensitive Data Exposure Vulnerability

Vulnerability

A vulnerability allowing the exposure of sensitive information in WordPress has been identified. This issue affects WordPress versions through 6.8.2 and requires contributor-level privileges to exploit. The vulnerability arises from the insertion of sensitive information into data that is sent, potentially allowing unauthorized retrieval of embedded sensitive data. The WordPress Core security team is aware of the issue and is working on a fix.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information that is not typically available to regular users, potentially allowing for further exploitation of other weaknesses in the system.

Added: Sep 23, 2025, 6:20 PM
Updated: Sep 23, 2025, 6:20 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
5.2
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.