CVE-2025-52752: WordPress IDonatePro plugin <= 2.1.9 - Sensitive Data Exposure vulnerability
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in ThemeAtelier IDonatePro idonate-pro allows Retrieve Embedded Sensitive Data.This issue affects IDonatePro: from n/a through <= 2.1.9.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52752?
CVE-2025-52752 is classified as a moderate severity vulnerability due to its potential for exposing sensitive system information.
How do I fix CVE-2025-52752?
To mitigate CVE-2025-52752, update ThemeAtelier IDonatePro to the latest version beyond 2.1.9 to close the vulnerability.
What types of systems are affected by CVE-2025-52752?
CVE-2025-52752 affects ThemeAtelier IDonatePro and WordPress IDonatePro versions up to and including 2.1.9.
What kind of sensitive data is exposed in CVE-2025-52752?
CVE-2025-52752 allows unauthorized retrieval of embedded sensitive data within the system.
Is CVE-2025-52752 specific to a certain version of IDonatePro?
Yes, CVE-2025-52752 specifically impacts IDonatePro versions up to and including 2.1.9.