CVE-2025-30609: WordPress AppExperts plugin <= 1.4.3 - Sensitive Data Exposure Vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in Saad Iqbal AppExperts appexperts allows Retrieve Embedded Sensitive Data.This issue affects AppExperts: from n/a through <= 1.4.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30609?
CVE-2025-30609 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
How do I fix CVE-2025-30609?
To address CVE-2025-30609, update the AppExperts – WordPress to Mobile App – WooCommerce to version 1.4.4 or later.
What type of data is exposed by CVE-2025-30609?
CVE-2025-30609 allows the retrieval of embedded sensitive data, which can include personal user information and authentication tokens.
Which versions are affected by CVE-2025-30609?
CVE-2025-30609 affects AppExperts – WordPress to Mobile App – WooCommerce versions up to and including 1.4.3.
Who is impacted by CVE-2025-30609?
Users of the AppExperts – WordPress to Mobile App – WooCommerce who have not yet updated to the patched version are impacted by CVE-2025-30609.