CVE-2025-49408: WordPress Premium Age Verification / Restriction for WordPress Plugin <= 3.0.2 - Arbitrary File Upload Vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in WPDeveloper Templately allows Retrieve Embedded Sensitive Data. This issue affects Templately: from n/a through 3.2.7.
Other sources
Unrestricted Upload of File with Dangerous Type vulnerability in WPDeveloper Premium Age Verification / Restriction for WordPress age-restriction allows Using Malicious Files.This issue affects Premium Age Verification / Restriction for WordPress: from n/a through <= 3.0.2.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-49408?
CVE-2025-49408 is classified as a high severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2025-49408?
To address CVE-2025-49408, upgrade WPDeveloper Templately to version 3.2.8 or later.
Which versions of Templately are affected by CVE-2025-49408?
CVE-2025-49408 affects WPDeveloper Templately versions up to and including 3.2.7.
What type of vulnerability is CVE-2025-49408?
CVE-2025-49408 is an insertion of sensitive information into sent data vulnerability.
Can CVE-2025-49408 lead to data breaches?
Yes, CVE-2025-49408 can facilitate unauthorized retrieval of embedded sensitive data, potentially leading to data breaches.