CVE-2025-64213: WordPress MasterStudy LMS Pro plugin < 4.7.16 - Sensitive Data Exposure vulnerability
Published Dec 18, 2025
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in StylemixThemes MasterStudy LMS Pro masterstudy-lms-learning-management-system-pro allows Retrieve Embedded Sensitive Data.This issue affects MasterStudy LMS Pro: from n/a through < 4.7.16.
Affected Software
2 affected components
StylemixThemes MasterStudy LMS Pro<4.7.16
wordpress/masterstudy-lms<4.7.16
Event History
Dec 18, 2025
CVE Published
via MITRE·07:22 AM
Data Sourced
via MITRE·07:22 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-64213?
CVE-2025-64213 has been classified as a moderate severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2025-64213?
To fix CVE-2025-64213, upgrade your MasterStudy LMS Pro to version 4.7.16 or later.
3
What versions of MasterStudy LMS Pro are affected by CVE-2025-64213?
CVE-2025-64213 affects all versions of MasterStudy LMS Pro prior to 4.7.16.
4
What type of vulnerability is CVE-2025-64213?
CVE-2025-64213 is an Insertion of Sensitive Information Into Sent Data vulnerability.
5
What does CVE-2025-64213 allow an attacker to do?
CVE-2025-64213 allows attackers to retrieve embedded sensitive data from the MasterStudy LMS Pro.