CVE-2023-7086
15.05.2025, 20:15
The SVG Uploads Support WordPress plugin through 2.1.1 does not sanitize uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.
Vendor | Product | Version |
---|---|---|
ablyperu | svg_uploads_support | 𝑥 ≤ 2.1.1 |
𝑥
= Vulnerable software versions