CVE-2024-3633 – The WebP & SVG Support WordPress plugin through 1.

CVE ID : CVE-2024-3633

Published : June 26, 2024, 6:15 a.m. | 1 hour, 4 minutes ago

Description : The WebP & SVG Support WordPress plugin through 1.4.0 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…CVE ID : CVE-2024-3633

Published : June 26, 2024, 6:15 a.m. | 1 hour, 4 minutes ago

Description : The WebP & SVG Support WordPress plugin through 1.4.0 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…