Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.6
CVE-2026-26212
- EPSS 0.46%
- Veröffentlicht 09.09.2026 14:50:33
- Zuletzt bearbeitet 10.09.2026 15:17:29
Rara One Click Demo Import plugin for WordPress before 1.3.5 contains an arbitrary file upload vulnerability that allows authenticated attackers with Administrator privileges to upload arbitrary PHP files by passing a false value to wp_handle_upload(...
8.8
CVE-2022-29451
- EPSS 0.56%
- Veröffentlicht 29.04.2022 17:15:22
- Zuletzt bearbeitet 21.11.2024 06:59:06
Cross-Site Request Forgery (CSRF) leading to Arbitrary File Upload vulnerability in Rara One Click Demo Import plugin <= 1.2.9 on WordPress allows attackers to trick logged-in admin users into uploading dangerous files into /wp-content/uploads/ direc...
1