PT-2025-39189 · WordPress+1 · Wordpress+1

Abu Hurayra

+4

·

Published

2025-09-22

·

Updated

2025-12-21

·

CVE-2025-58246

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions WordPress versions through 6.8.2
Description A flaw exists in WordPress that could allow retrieval of embedded sensitive data through insertion of sensitive information into sent data. The issue is considered low severity and requires contributor-level privileges to exploit.
Recommendations Update WordPress to a version later than 6.8.2.

Fix

Weakness Enumeration

Related Identifiers

BDU:2025-13138
BIT-WORDPRESS-2025-58246
BIT-WORDPRESS-MULTISITE-2025-58246
CVE-2025-58246
DLA-4358-1
DSA-6075-1
DSA-6091-1

Affected Products

Debian
Wordpress