{"id":"CVE-2025-60188","title":"Insertion of Sensitive Information Into Sent Data vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Retrieve Embedded Sensitive Data.This issue affects Atarim: from n/a through <= 4.2.1.","summary":"Insertion of Sensitive Information Into Sent Data vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Retrieve Embedded Sensitive Data.This issue affects Atarim: from n/a through <= 4.2.1.","severity":"high","cvss":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","cwe":["CWE-201"],"published":"2025-11-06","updated":"2026-10-07","sourceUpdated":"2026-10-07T21:10:00.200","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2025-60188","references":[{"url":"https://patchstack.com/database/Wordpress/Plugin/atarim-visual-collaboration/vulnerability/wordpress-atarim-plugin-4-2-sensitive-data-exposure-vulnerability-2?_s_id=cve","label":"audit@patchstack.com"}],"tags":["nvd","exploit-available"],"epss":0.03733,"epssPercentile":0.89537,"exploits":{"exploitdb":true,"github":1,"githubRepos":["https://github.com/m4sh-wacker/CVE-2025-60188-Atarim-Plugin-Exploit"],"nuclei":["CVE-2025-60188"],"checkedAt":"2026-10-07T21:54:50.409Z"},"exploitAvailable":true,"ingestedAt":"2026-10-07T21:54:14.946Z","slug":"CVE-2025-60188","body":"## Overview\n\nInsertion of Sensitive Information Into Sent Data vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Retrieve Embedded Sensitive Data.This issue affects Atarim: from n/a through <= 4.2.1.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":54,"depthScoreParts":{"impact":41.3,"likelihood":0.7,"exploitation":12,"ransomware":0},"changes":[]}