Security Advisory

CVE-2023-1478

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-10 13:17:59
Last updated 2025-02-11 15:11:18
Assigner WPScan
State PUBLISHED

Description

The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writing them, leading to a path traversal vulnerability in the page cache module.