CVE-2025-52719: WordPress ProfileGrid plugin <= 5.9.5.2 - Full Path Disclosure (FPD) Vulnerability
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Metagauss ProfileGrid profilegrid-user-profiles-groups-and-communities allows Retrieve Embedded Sensitive Data.This issue affects ProfileGrid : from n/a through <= 5.9.5.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What are the consequences of CVE-2025-52719?
CVE-2025-52719 allows unauthorized access to sensitive system information, posing a risk of data exposure.
Which versions of Metagauss ProfileGrid are affected by CVE-2025-52719?
CVE-2025-52719 affects all versions of Metagauss ProfileGrid up to and including version 5.9.5.2.
How can I mitigate CVE-2025-52719 in my application?
To mitigate CVE-2025-52719, upgrade to the latest version of Metagauss ProfileGrid that addresses the vulnerability.
Is CVE-2025-52719 a critical vulnerability?
CVE-2025-52719 is considered a high-severity vulnerability due to its potential to expose sensitive data.
Can CVE-2025-52719 affect my WordPress site?
Yes, CVE-2025-52719 impacts the WordPress version of ProfileGrid, allowing unauthorized data retrieval.