CVE-2024-11184
02.01.2025, 06:15
The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above to upload SVGs containing malicious scriptsEnginsight
| Vendor | Product | Version |
|---|---|---|
| wp_enable_svg_project | wp_enable_svg | 𝑥 ≤ 0.7 |
𝑥
= Vulnerable software versions