Sensitive Data Exposure in Themovation QuickCal Plugin
CVE-2025-32299
4.3MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 16 May 2025
What is CVE-2025-32299?
Themovation's QuickCal plugin is susceptible to an exposure of sensitive system information, allowing unauthorized control over embedded sensitive data. This vulnerability impacts versions starting from n/a to 1.0.15 of QuickCal, potentially enabling attackers to retrieve critical information, compromising the integrity and confidentiality of the system.
Affected Version(s)
QuickCal - Appointment Booking Calendar for WordPress 0 <= 1.0.15