What the vulnerability does
01Description
Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Unauthenticated Sensitive Data Exposure in Create by Mediavine <= 2.5.3 versions.
Explanation of Vulnerability in Simple Terms
Create by Mediavine versions up to 2.5.3 expose sensitive information through the network without requiring authentication or user interaction. An attacker can read non-public data from the affected component. The vulnerability has a low confidentiality impact and does not affect data integrity or availability.
What an attacker can do
Read sensitive information from the site without logging in.
Potential impact on your site
Confidential data may be exposed to unauthenticated visitors.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities