WP Reset – Most Advanced WordPress Reset Tool, CVE-2025-10645
- CVE, Research URL
- Published on
- Oct 07, 2025
- Research Description
- The WP Reset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.05 via the WF_Licensing::log() method when debugging is enabled (default). This makes it possible for unauthenticated attackers to extract sensitive license key and site data.
- Affected versions
-
max 2.06.
- Status
-
vulnerable