CVE-2024-11184
02.01.2025, 06:15
The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above to upload SVGs containing malicious scriptsEnginsight
Vendor | Product | Version |
---|---|---|
wp_enable_svg_project | wp_enable_svg | 𝑥 ≤ 0.7 |
𝑥
= Vulnerable software versions