CVE-2025-47541: WordPress Mail Mint plugin <= 1.17.7 - Sensitive Data Exposure Vulnerability
Published May 23, 2025
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in WPFunnels Mail Mint mail-mint allows Retrieve Embedded Sensitive Data.This issue affects Mail Mint: from n/a through <= 1.17.7.
Affected Software
1 affected component
WPFunnels Mail Mint<=1.17.7
Remediation
Information
Update the WordPress Mail Mint plugin to the latest available version (at least 1.17.8).
Event History
May 23, 2025
CVE Published
via MITRE·12:43 PM
Data Sourced
via MITRE·12:43 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-47541?
CVE-2025-47541 is classified as a medium severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2025-47541?
To fix CVE-2025-47541, update WPFunnels Mail Mint to version 1.17.8 or later.
3
What versions of Mail Mint are affected by CVE-2025-47541?
CVE-2025-47541 affects Mail Mint versions from n/a up to and including 1.17.7.
4
What kind of data is vulnerable in CVE-2025-47541?
CVE-2025-47541 allows the retrieval of embedded sensitive data, which could include personal or confidential user information.
5
Who is impacted by CVE-2025-47541?
Users of WPFunnels Mail Mint and WordPress Mail Mint versions from n/a to 1.17.7 are impacted by CVE-2025-47541.