WP Clinic
Entrar Registrarse

CVE · Medium

CVE-2025-3104 — WP Staging Pro [wp-staging-pro] < 6.1.3

CVE Vulnerabilidad Tipo Gravedad Afectadas Corregido en Publicado Estado
CVE-2025-3104 WP Staging Pro [wp-staging-pro] < 6.1.3 Exposición de información sensible a un actor no autorizado Media 5,3 < 6.1.3 6.1.3 0000-00-00

CVE-2025-3104

The WP STAGING Pro WordPress Backup Plugin for WordPress is vulnerable to Information Exposure in all versions up to and including 6.1.2 due to missing capability checks on the getOutdatedPluginsRequest() function. This makes it possible for unauthenticated attackers to reveal outdated installed active or inactive plugins.

Descripción técnica mostrada en el idioma original de la fuente (inglés).

Fuente: Wordfence

Escanea tu sitio WordPress gratis

Sin registro, sin tarjeta de crédito — ingresa tu URL y obtén un informe de seguridad en segundos.