CVE-2025-49419: Esigngenie Foxit Esign For WordPress

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in esigngenie Foxit eSign for WordPress esign-genie-for-wp allows Retrieve Embedded Sensitive Data.This issue affects Foxit eSign for WordPress: from n/a through <= 2.0.3.

Affected products

  • Esigngenie Foxit Esign For WordPress: up to and including 2.0.3

Published 2025-06-06. Last modified 2026-06-17.