Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2024-9939
The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 4.24.13 via wfu_file_downloader.…
Wordpress File Upload
4.24.14+
CRITICAL 9.8
CVE-2024-11635
The WordPress File Upload plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.24.12 via the 'wfu_ABSP…
Wordpress File Upload
4.24.15+
CRITICAL 9.8
CVE-2024-11613
The WordPress File Upload plugin for WordPress is vulnerable to Remote Code Execution, Arbitrary File Read, and Arbitrary File Deletion in all versio…
Wordpress File Upload
4.25.0+
CRITICAL 9.8
CVE-2024-9047EPSS 93%
The WordPress File Upload plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 4.24.11 via wfu_file_downloader.…
Wordpress File Upload
4.24.12+
MEDIUM 6.1
CVE-2024-7301
The WordPress File Upload plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including…
Wordpress File Upload
4.24.9+
MEDIUM 6.1
CVE-2024-6494
The WordPress File Upload WordPress plugin before 4.24.8 does not properly sanitize and escape certain parameters, which could allow unauthenticated …
Wordpress File Upload
4.24.8+
MEDIUM 6.1
CVE-2024-6651EPSS 15%
The WordPress File Upload WordPress plugin before 4.24.8 does not sanitise and escape a parameter before outputting it back in the page, leading to a…
Wordpress File Upload
4.24.8+
MEDIUM 5.4
CVE-2024-2847
The WordPress File Upload plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and …
Wordpress File Upload
4.24.6+
MEDIUM 5.4
CVE-2023-4811
The WordPress File Upload WordPress plugin before 4.23.3 does not sanitise and escape some of its settings, which could allow high privilege users su…
Wordpress File Upload
4.23.3+
MEDIUM 5.5
CVE-2023-2767
The WordPress File Upload and WordPress File Upload Pro plugins for WordPress are vulnerable to Stored Cross-Site Scripting via admin settings in ver…
Wordpress File Upload
after 4.19.1
HIGH 8.8
CVE-2021-24962
The WordPress File Upload Free and Pro WordPress plugins before 4.16.3 allow users with a role as low as Contributor to perform path traversal via a …
Wordpress File Upload
4.16.3+
MEDIUM 5.4
CVE-2021-24960
The WordPress File Upload WordPress plugin before 4.16.3, wordpress-file-upload-pro WordPress plugin before 4.16.3 allows users with a role as low as…
Wordpress File Upload
4.16.3+
MEDIUM 5.4
CVE-2021-24961
The WordPress File Upload WordPress plugin before 4.16.3, wordpress-file-upload-pro WordPress plugin before 4.16.3 does not escape some of its shortc…
Wordpress File Upload
4.16.3+
CRITICAL 9.8
CVE-2020-10564EPSS 9%
An issue was discovered in the File Upload plugin before 4.13.0 for WordPress. A directory traversal can lead to remote code execution by uploading a…
Wordpress File Upload
4.13.0+
HIGH 7.5
CVE-2015-9338
The wp-file-upload plugin before 2.5.0 for WordPress has insufficient restrictions on upload of .php files.
Wordpress File Upload
2.5.0+
HIGH 7.5
CVE-2015-9339
The wp-file-upload plugin before 2.7.1 for WordPress has insufficient restrictions on upload of .js files.
Wordpress File Upload
2.7.1+
HIGH 7.5
CVE-2015-9340
The wp-file-upload plugin before 3.0.0 for WordPress has insufficient restrictions on upload of php, js, pht, php3, php4, php5, phtml, htm, html, and…
Wordpress File Upload
3.0.0+
HIGH 7.5
CVE-2015-9341
The wp-file-upload plugin before 3.4.1 for WordPress has insufficient restrictions on upload of .php.js files.
Wordpress File Upload
3.4.1+
MEDIUM 6.1
CVE-2018-9844
The Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.
Wordpress File Upload
4.3.4+
MEDIUM 5.4
CVE-2018-9172
The Iptanus WordPress File Upload plugin before 4.3.3 for WordPress mishandles shortcode attributes.
Wordpress File Upload
4.3.3+