CVE-2025-31856
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Apr 1, 2025
CWE ID 862
Summary
CVE-2025-31856 is a vulnerability affecting the Export All Post Meta feature in brainvireinfo, which allows unauthorized access to functionality due to missing authorization checks. This issue, present in versions 1.2.1 and below, enables users who should not have the necessary permissions to export all post meta data, potentially leading to sensitive data exposure or unintended actions.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress