The Mime Types Extended WordPress... CVE-2024-4759

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

The Mime Types Extended WordPress plugin through 0.11 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息