CVE-2025-39556

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in mediavine Mediavine Control Panel mediavine-control-panel allows Retrieve Embedded Sensitive Data.This issue affects Mediavine Control Panel: from n/a through <= 2.10.6.
Configurations

No configuration.

History

23 Apr 2026, 15:29

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

01 Apr 2026, 17:23

Type Values Removed Values Added
Summary
  • (es) Exposición de información sensible del sistema a una vulnerabilidad de esfera de control no autorizada en mediavine Mediavine Control Panel permite recuperar datos confidenciales incrustados. Este problema afecta al Panel de Control de Mediavine desde la versión n/d hasta la 2.10.6.
Summary (en) Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in mediavine Mediavine Control Panel allows Retrieve Embedded Sensitive Data. This issue affects Mediavine Control Panel: from n/a through 2.10.6. (en) Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in mediavine Mediavine Control Panel mediavine-control-panel allows Retrieve Embedded Sensitive Data.This issue affects Mediavine Control Panel: from n/a through <= 2.10.6.
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : unknown
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/mediavine-control-panel/vulnerability/wordpress-mediavine-control-panel-plugin-2-10-6-sensitive-data-exposure-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/mediavine-control-panel/vulnerability/wordpress-mediavine-control-panel-plugin-2-10-6-sensitive-data-exposure-vulnerability?_s_id=cve -

16 Apr 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-16 13:15

Updated : 2026-04-23 15:29


NVD link : CVE-2025-39556

Mitre link : CVE-2025-39556

CVE.ORG link : CVE-2025-39556


JSON object : View

Products Affected

No product.

CWE
CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere