CVE-2025-15005 | CouchCMS up to 2.4 reCAPTCHA couch/config.example.php K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY hard-coded key
A vulnerability, which was classified as problematic, was found in CouchCMS up to 2.4. Affected is an unknown function of the file couch/config.example.php of the component reCAPTCHA Handler. The manipulation of the argument K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY results in use of hard-coded cryptographic key
.
This vulnerability is known as CVE-2025-15005. It is possible to launch the attack remotely. Furthermore, an exploit is available.VulDB Recent EntriesRead More