Lucene search

K
patchstackUniverse (Patchstack Alliance)PATCHSTACK:3913D9121025FA08EA1E754802C175A1
HistoryAug 12, 2022 - 12:00 a.m.

WordPress Uploading SVG, WEBP and ICO files plugin <= 1.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability

2022-08-1200:00:00
Universe (Patchstack Alliance)
patchstack.com
20
wordpress
svg
webp
ico
xss
vulnerability

0.001 Low

EPSS

Percentile

19.4%

Authenticated Stored Cross-Site Scripting (XSS) vulnerability via malicious SVG file upload discovered by Universe (Patchstack Alliance) in WordPress Uploading SVG, WEBP and ICO files plugin (versions <= 1.0.1).

Solution

           No patched version available.

0.001 Low

EPSS

Percentile

19.4%

Related for PATCHSTACK:3913D9121025FA08EA1E754802C175A1