๐Ÿ” CVE Alert

CVE-2025-63009

MEDIUM 5.3

WordPress WP Google Analytics Events plugin <= 2.8.2 - Sensitive Data Exposure vulnerability

CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in yuvalo WP Google Analytics Events wp-google-analytics-events allows Retrieve Embedded Sensitive Data.This issue affects WP Google Analytics Events: from n/a through <= 2.8.2.

CWE CWE-497
Vendor yuvalo
Product wp google analytics events
Published Dec 9, 2025
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for yuvalo wp google analytics events

Be the first to know when new medium vulnerabilities affecting yuvalo wp google analytics events are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

yuvalo / WP Google Analytics Events
0 โ‰ค 2.8.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/wp-google-analytics-events/vulnerability/wordpress-wp-google-analytics-events-plugin-2-8-2-sensitive-data-exposure-vulnerability?_s_id=cve

Credits

Legion Hunter | Patchstack Bug Bounty Program