CVE-2025-63071: WordPress Shortcodes and extra features for Phlox theme plugin <= 2.17.15 - Sensitive Data Exposure vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in averta Shortcodes and extra features for Phlox theme auxin-elements allows Retrieve Embedded Sensitive Data.This issue affects Shortcodes and extra features for Phlox theme: from n/a through <= 2.17.15.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-63071?
CVE-2025-63071 is classified as a medium severity vulnerability due to the potential exposure of sensitive information.
How do I fix CVE-2025-63071?
To fix CVE-2025-63071, update the Shortcodes and extra features for Phlox theme to version 2.17.12 or later.
What type of vulnerability is CVE-2025-63071?
CVE-2025-63071 is an Insertion of Sensitive Information Into Sent Data vulnerability.
Which software is affected by CVE-2025-63071?
CVE-2025-63071 affects the Shortcodes and extra features for Phlox theme version up to 2.17.12.
Can CVE-2025-63071 lead to data exposure?
Yes, CVE-2025-63071 allows for the retrieval of embedded sensitive data, leading to potential data exposure.