CVE-2024-4388

Publication date

2024-05-23 06:00:03

Family

WPScan

State

PUBLISHED

Description

This does not validate a path generated with user input when downloading files, allowing unauthenticated user to download arbitrary files from the server