PT-2026-23575 · Google+5 · Google Maps+6

Quốc Huy

·

Published

2026-03-05

·

Updated

2026-03-06

·

CVE-2026-2589

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Greenshift – animation and page builder blocks versions through 12.8.3
Description The Greenshift plugin for WordPress is susceptible to exposure of sensitive information. This occurs due to the automated Settings Backup being stored in a publicly accessible file, allowing unauthenticated attackers to extract data. Compromised data includes API keys for OpenAI, Claude, Google Maps, Gemini, DeepSeek, and Cloudflare Turnstile.
Recommendations Versions prior to 12.8.3 should be updated.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-2589

Affected Products

Claude
Cloudflare Turnstile
Deepseek
Gemini
Google Maps
Greenshift
Openai