Vulnerability Description
Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the database server being temporarily down or too busy.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mahara | Mahara | < 24.04.9 |
Related Weaknesses (CWE)
References
- https://mahara.org/THE-FINAL-URL-IN-QUESTIONBroken Link
- https://mahara.org/interaction/forum/topic.php?id=9711Vendor Advisory
FAQ
What is CVE-2025-29992?
CVE-2025-29992 is a vulnerability with a CVSS score of 7.5 (HIGH). Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the database server being temporarily down or too busy.
How severe is CVE-2025-29992?
CVE-2025-29992 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-29992?
Check the references section above for vendor advisories and patch information. Affected products include: Mahara Mahara.