CVE-2025-62026: WordPress Blockspare plugin <= 3.2.13.2 - Sensitive Data Exposure vulnerability
Published Oct 22, 2025
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in Blockspare Blockspare blockspare allows Retrieve Embedded Sensitive Data.This issue affects Blockspare: from n/a through <= 3.2.13.2.
Affected Software
2 affected components
Blockspare Blockspare<=3.2.13.2
WordPress Blockspare plugin<=3.2.13.2
Event History
Oct 22, 2025
CVE Published
via MITRE·02:32 PM
Data Sourced
via MITRE·02:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-62026?
CVE-2025-62026 is classified as a moderate severity vulnerability due to its potential exposure of sensitive information.
2
How do I fix CVE-2025-62026?
To fix CVE-2025-62026, update Blockspare to version 3.2.13.3 or later.
3
What types of sensitive data could be exposed by CVE-2025-62026?
CVE-2025-62026 allows for the retrieval of embedded sensitive data, which can include personal or proprietary information.
4
Which versions of Blockspare are affected by CVE-2025-62026?
CVE-2025-62026 affects all versions of Blockspare from n/a through 3.2.13.2.
5
Is the Blockspare plugin for WordPress also vulnerable to CVE-2025-62026?
Yes, the Blockspare plugin for WordPress is vulnerable to CVE-2025-62026 up to version 3.2.13.2.