Home

Description

The Database Toolset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.8.4 via backup files stored in a publicly accessible location. This makes it possible for unauthenticated attackers to extract sensitive data from database backup files. An index file is present, so a brute force attack would need to be successful in order to compromise any data.

PUBLISHED Reserved 2025-05-02 | Published 2025-05-03 | Updated 2026-04-08 | Assigner Wordfence




MEDIUM: 5.9CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Product status

Default status
unaffected

Any version
affected

Timeline

2025-05-02:Disclosed

Credits

Guy Shavit finder

References

www.wordfence.com/...-9e26-41a1-8dea-4bafaf735bee?source=cve

plugins.trac.wordpress.org/...ss-database-toolset-backup.php

plugins.trac.wordpress.org/...ass-database-toolset-admin.php

www.guyshavit.com/post/cve-2025-4222

cve.org (CVE-2025-4222)

nvd.nist.gov (CVE-2025-4222)

Download JSON