Beveiligingsadvies

CVE-2023-7085

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-03-18 19:05:50
Laatst bijgewerkt 2024-08-28 15:36:59
Toegewezen door WPScan
CVSS-score 5.4
Status PUBLISHED

Beschrijving

The Scalable Vector Graphics (SVG) WordPress plugin through 3.4 does not sanitize uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.