Description

Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability in Javier Carazo Import and export users and customers import-users-from-csv-with-meta allows Retrieve Embedded Sensitive Data.This issue affects Import and export users and customers: from n/a through <= 1.27.12.

INFO

Published Date :

2025-01-27T14:22:17.652Z

Last Modified :

2026-04-28T16:11:32.050Z

Source :

Patchstack
AFFECTED PRODUCTS

The following products are affected by CVE-2025-24689 vulnerability.

Vendors Products
Codection
  • Import And Export Users And Customers
Wordpress
  • Wordpress

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact