CVE-2025-29992 – Mahara Database Connection Information Disclosure

The following table lists the changes that have been made to the
CVE-2025-29992 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Aug. 26, 2025

    Action Type Old Value New Value
    Added Description Mahara before 24.04.9 exposes database connection information if the database becomes unreachable, e.g., due to the database server being temporarily down or too busy.
    Added Reference https://mahara.org/interaction/forum/topic.php?id=9711
    Added Reference https://mahara.org/THE-FINAL-URL-IN-QUESTION
Share the Post:

Related Posts