← WordPress Vulnerabilities
WordPress security by component

BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security

BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Aug 02, 2025; the highest CVE/CNA score is 5.3.

Plugin slug: bitfire-security-firewall-waf-bot-spam-blocker-login-security

CVE-2025-6722: BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security: Sensitive information exposure

The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.

PublishedAug 02, 2025
Safe version guidanceSee mitigation notes
Safe version
Aug 02, 2025 CVE-2025-6722
BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security: Sensitive information exposure
The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
See mitigation notes
CVE5.3
NVDPending