CVE-2025-12558: Beaver Builder – WordPress Page Builder <= 2.9.4 - Authenticated (Contributor+) Sensitive Information Exposure
The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.9.4 via the 'getattachmentsizes' function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including the path and meta data of private attachments, which can be used to view the attachments.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12558?
CVE-2025-12558 is classified as a moderate severity vulnerability that exposes sensitive information.
How do I fix CVE-2025-12558?
To mitigate CVE-2025-12558, update the Beaver Builder plugin to version 2.9.5 or higher.
Who is affected by CVE-2025-12558?
CVE-2025-12558 affects all versions of the Beaver Builder plugin up to and including 2.9.4, allowing authenticated users with Contributor-level access to exploit it.
What type of vulnerability is CVE-2025-12558?
CVE-2025-12558 is a Sensitive Information Exposure vulnerability that can lead to unauthorized access to private data.
What functionality is exploited in CVE-2025-12558?
CVE-2025-12558 is exploited via the 'get_attachment_sizes' function in the Beaver Builder plugin.