CVE-2024-6494
EUVD-2024-4757907.08.2024, 06:16
The WordPress File Upload WordPress plugin before 4.24.8 does not properly sanitize and escape certain parameters, which could allow unauthenticated users to execute stored cross-site scripting (XSS) attacks.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| iptanus | wordpress_file_upload | 𝑥 < 4.24.8 |
𝑥
= Vulnerable software versions