First published: Mon Feb 17 2025(Updated: )
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in RebelCode Spotlight Social Media Feeds allows Retrieve Embedded Sensitive Data. This issue affects Spotlight Social Media Feeds: from n/a through 1.7.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
RebelCode Spotlight Social Media Feeds | <=1.7.1 | |
RebelCode Spotlight Social Media Feeds | <=1.7.1 |
Update the WordPress Spotlight Social Media Feeds wordpress plugin to the latest available version (at least 1.7.2).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26758 is classified as a vulnerability that exposes sensitive system information, potentially leading to unauthorized access.
To fix CVE-2025-26758, update RebelCode Spotlight Social Media Feeds to version 1.7.2 or later.
CVE-2025-26758 allows the retrieval of embedded sensitive data, which can include system information and configuration details.
CVE-2025-26758 affects RebelCode Spotlight Social Media Feeds versions up to and including 1.7.1.
CVE-2025-26758 can be exploited remotely by unauthorized users to gain access to sensitive data.