CVE-2024-6494
07.08.2024, 06:16
The WordPress File Upload WordPress plugin before 4.24.8 does not properly sanitize and escape certain parameters, which could allow unauthenticated users to execute stored cross-site scripting (XSS) attacks.
| Vendor | Product | Version |
|---|---|---|
| iptanus | wordpress_file_upload | 𝑥 < 4.24.8 |
𝑥
= Vulnerable software versions