CVE-2025-58015: WordPress Quiz Maker Plugin <= 6.7.0.65 - Sensitive Data Exposure Vulnerability
Published Sep 22, 2025
·Updated
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Ays Pro Quiz Maker quiz-maker allows Retrieve Embedded Sensitive Data.This issue affects Quiz Maker: from n/a through <= 6.7.0.65.
Affected Software
3 affected components
Ays Pro Quiz Maker>=6.7.0.61
WordPress Quiz Maker Plugin<=6.7.0.61
ays-pro Quiz Maker Wordpress<=6.7.0.61
Event History
Sep 22, 2025
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
DescriptionWeakness
Data Sourced
via NVD·07:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-58015?
CVE-2025-58015 is classified as a critical vulnerability due to its potential to expose sensitive system information.
2
How do I fix CVE-2025-58015?
To mitigate CVE-2025-58015, upgrade Ays Pro Quiz Maker to version 6.7.0.62 or later to address the sensitive data exposure.
3
What types of data are exposed in CVE-2025-58015?
CVE-2025-58015 allows unauthorized retrieval of embedded sensitive data within Ays Pro Quiz Maker.
4
Which versions of Ays Pro Quiz Maker are affected by CVE-2025-58015?
CVE-2025-58015 affects Ays Pro Quiz Maker versions from launch through 6.7.0.61.
5
Does CVE-2025-58015 affect WordPress Quiz Maker Plugin?
Yes, CVE-2025-58015 also affects the WordPress Quiz Maker Plugin up to version 6.7.0.61.