A vulnerability, which was classified as problematic, was found in CouchCMS up to 2.4. Affected is an unknown function of the file couch/config.example.php of the component reCAPTCHA Handler. The manipulation of the argument K_RECAPTCHA_SITE_KEY/K_RECAPTCHA_SECRET_KEY results in use of hard-coded cryptographic key
.
.
This vulnerability is known as CVE-2025-15005. It is possible to launch the attack remotely. Furthermore, an exploit is available.
Several companies clearly confirm that VulDB is the primary source for best vulnerability data.