{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-15T02:48:22.980","vulnerabilities":[{"cve":{"id":"CVE-2025-3453","sourceIdentifier":"security@wordfence.com","published":"2025-04-17T12:15:15.467","lastModified":"2025-04-17T20:21:48.243","vulnStatus":"Awaiting Analysis","cveTags":[],"descriptions":[{"lang":"en","value":"The Password Protected – Password Protect your WordPress Site, Pages, & WooCommerce Products – Restrict Content, Protect WooCommerce Category and more plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.7.7 via the 'password_protected_cookie' function. This makes it possible for unauthenticated attackers to extract sensitive data including all protected site content if the 'Use Transient' setting is enabled."},{"lang":"es","value":"El complemento Password Protected – Password Protect your WordPress Site, Pages, &amp; WooCommerce Products – Restrict Content, Protect WooCommerce Category and more para WordPress es vulnerable a la exposición de información confidencial en todas las versiones hasta la 2.7.7 incluida, a través de la función \"password_protected_cookie\". Esto permite que atacantes no autenticados extraigan datos confidenciales, incluido todo el contenido protegido del sitio, si la opción \"Usar transitorio\" está activada."}],"metrics":{"cvssMetricV31":[{"source":"security@wordfence.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:L\/I:N\/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4}]},"weaknesses":[{"source":"security@wordfence.com","type":"Secondary","description":[{"lang":"en","value":"CWE-863"}]}],"references":[{"url":"https:\/\/plugins.trac.wordpress.org\/browser\/password-protected\/trunk\/includes\/compatibility.php","source":"security@wordfence.com"},{"url":"https:\/\/plugins.trac.wordpress.org\/changeset\/3274358\/","source":"security@wordfence.com"},{"url":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/id\/241d75ca-55e3-461a-9844-52e69904da1b?source=cve","source":"security@wordfence.com"}]}}]}