CVE-2025-66056: WordPress Uncanny Automator plugin < 6.10.0 - Sensitive Data Exposure vulnerability
Published Nov 21, 2025
·Updated
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Uncanny Owl Uncanny Automator uncanny-automator allows Retrieve Embedded Sensitive Data.This issue affects Uncanny Automator: from n/a through < 6.10.0.
Affected Software
2 affected components
Uncanny Owl Uncanny Automator<6.10.0
WordPress Uncanny Automator<6.10.0
Event History
Nov 21, 2025
CVE Published
via MITRE·12:29 PM
Data Sourced
via MITRE·12:29 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-66056?
CVE-2025-66056 is a critical vulnerability due to its potential for exposing sensitive system information.
2
How do I fix CVE-2025-66056?
To fix CVE-2025-66056, update Uncanny Automator to version 6.10.0 or higher.
3
What type of vulnerability is CVE-2025-66056?
CVE-2025-66056 is classified as an exposure of sensitive system information to an unauthorized control sphere vulnerability.
4
What software is affected by CVE-2025-66056?
CVE-2025-66056 affects versions of Uncanny Automator prior to 6.10.0.
5
Could CVE-2025-66056 lead to data breaches?
Yes, CVE-2025-66056 has the potential to lead to data breaches by allowing unauthorized access to sensitive information.