Security Advisory

CVE-2024-11184

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-02 06:00:04
Last updated 2025-01-06 20:30:08
Assigner WPScan
State PUBLISHED

Description

The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above to upload SVGs containing malicious scripts