Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in ThemeHunk WP Popup Builder wp-popup-builder allows Retrieve Embedded Sensitive Data.This issue affects WP Popup Builder: from n/a through <= 1.3.6.
References
Configurations
History
08 Jan 2026, 17:55
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:themehunk:wp_popup_builder:*:*:*:*:*:wordpress:*:* | |
| First Time |
Themehunk wp Popup Builder
Themehunk |
|
| References | () https://vdp.patchstack.com/database/Wordpress/Plugin/wp-popup-builder/vulnerability/wordpress-wp-popup-builder-plugin-1-3-6-sensitive-data-exposure-vulnerability?_s_id=cve - Third Party Advisory |
13 Nov 2025, 11:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
28 Oct 2025, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
27 Oct 2025, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-10-27 02:15
Updated : 2026-01-08 17:55
NVD link : CVE-2025-62902
Mitre link : CVE-2025-62902
CVE.ORG link : CVE-2025-62902
JSON object : View
Products Affected
themehunk
- wp_popup_builder
CWE
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
