🔐 CVE Alert

CVE-2025-63019

HIGH 7.5

WordPress Cookies and Content Security Policy plugin <= 2.34 - Sensitive Data Exposure vulnerability

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

Insertion of Sensitive Information Into Sent Data vulnerability in Johan Jonk Stenström Cookies and Content Security Policy cookies-and-content-security-policy allows Retrieve Embedded Sensitive Data.This issue affects Cookies and Content Security Policy: from n/a through <= 2.34.

CWE CWE-201
Vendor johan jonk stenström
Product cookies and content security policy
Published Jan 22, 2026
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for johan jonk stenström cookies and content security policy

Be the first to know when new high vulnerabilities affecting johan jonk stenström cookies and content security policy are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Johan Jonk Stenström / Cookies and Content Security Policy
0 ≤ 2.34

References

NVD ↗ CVE.org ↗ EPSS Data ↗
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/cookies-and-content-security-policy/vulnerability/wordpress-cookies-and-content-security-policy-plugin-2-34-sensitive-data-exposure-vulnerability?_s_id=cve

Credits

MD ISMAIL | Patchstack Bug Bounty Program