CVE-2025-53987: WordPress JetMenu <= 2.4.11.1 - Sensitive Data Exposure Vulnerability
Published Aug 20, 2025
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in Crocoblock JetMenu jet-menu allows Retrieve Embedded Sensitive Data.This issue affects JetMenu: from n/a through <= 2.4.11.1.
Affected Software
1 affected component
Crocoblock JetMenu<=2.4.11.1
Remediation
Information
Update the WordPress JetMenu plugin to the latest available version (at least 2.4.11.2).
Event History
Aug 20, 2025
CVE Published
via MITRE·08:03 AM
Data Sourced
via MITRE·08:03 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-53987?
CVE-2025-53987 has a medium severity level as it allows for the retrieval of embedded sensitive data.
2
How do I fix CVE-2025-53987?
To fix CVE-2025-53987, update Crocoblock JetMenu to a version higher than 2.4.11.1.
3
What systems are affected by CVE-2025-53987?
CVE-2025-53987 affects Crocoblock JetMenu and WordPress JetMenu versions up to and including 2.4.11.1.
4
What type of vulnerability is CVE-2025-53987?
CVE-2025-53987 is an insertion of sensitive information into sent data vulnerability.
5
Can CVE-2025-53987 lead to data breaches?
Yes, CVE-2025-53987 can potentially lead to data breaches by allowing unauthorized retrieval of sensitive information.