CVE-2025-32257

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Apr 4, 2025
Updated: Apr 7, 2025
CWE ID 1258

Summary

CVE-2025-32257 is a vulnerability affecting the 1 Click WordPress Migration tool from version n/a through 2.2. The issue exposes sensitive system information due to the failure to clear debug information properly. An attacker can retrieve embedded sensitive data, potentially including database credentials or other confidential information, by exploiting this vulnerability. This weakness could lead to unauthorized access or data breaches. Users are urged to upgrade to a patched version of the software to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share