WordPress Atarim plugin <= 4.2.1 - Sensitive Data Exposure vulnerability
58Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 7.5epss 3.5%
from disclosure to weapon62 days
Published on NVDNov 6
1st PoC+62d
exploitation probability
3.5%top 12% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Insertion of Sensitive Information Into Sent Data vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Retrieve Embedded Sensitive Data.This issue affects Atarim: from n/a through <= 4.2.1.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
Vito Peleg · Atarimpublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/52628unverifiedgithubgithub.com/m4sh-wacker/CVE-2025-60188-Atarim-Plugin-Exploit★ 22⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.