Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4524-hxm7-m92p

Опубликовано: 24 нояб. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue

The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue

EPSS

Процентиль: 92%
0.05028
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
почти 5 лет назад

The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue

EPSS

Процентиль: 92%
0.05028
Низкий

7.5 High

CVSS3

Дефекты

CWE-22