CVE Vulnerabilities

CVE-2024-11184

Published: Jan 02, 2025 | Modified: Jun 24, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The wp-enable-svg WordPress plugin through 0.7 does not sanitize SVG files when uploaded, allowing for authors and above to upload SVGs containing malicious scripts

Affected Software

NameVendorStart VersionEnd Version
Wp_enable_svgWp_enable_svg_project*0.7 (including)

References