Sensitive Information Exposure in Export WP Page to Static HTML & PDF Plugin for WordPress
CVE-2025-11693
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 13 December 2025
What is CVE-2025-11693?
The Export WP Page to Static HTML & PDF plugin for WordPress is susceptible to sensitive information exposure, risking the compromise of authentication cookies. All versions prior to and including 4.3.4 are affected. This vulnerability arises when an unauthenticated attacker gains access to cookies.txt files that may record sensitive authentication information, particularly if a site administrator has used a specific role to trigger a backup. As a result, attackers can exploit this issue by retrieving confidential cookie data from publicly accessible files, leading to potential unauthorized access and further security breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Export WP Pages to HTML & PDF β Simply Create a Static Website * <= 4.3.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved