Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-40217 | 1 Xplodedthemes | 1 Wpide | 2022-09-22 | N/A | 7.2 HIGH |
Authenticated (admin+) Arbitrary File Edit/Upload vulnerability in XplodedThemes WPide plugin <= 2.6 at WordPress. | |||||
CVE-2022-2261 | 1 Xplodedthemes | 1 Wpide | 2022-08-31 | N/A | 7.2 HIGH |
The WPIDE WordPress plugin before 3.0 does not sanitize and validate the filename parameter before using it in a require statement in the admin dashboard, leading to a Local File Inclusion issue. |