cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches formoneytigo moneytigo

Direction: ascending
Mar 30, 2026

OVRI Payment # CVE-2024-10938

CVE, Research URL

CVE-2024-10938

Application

OVRI Payment

Date
Feb 27, 2026
Research Description
The OVRI Payment plugin for WordPress contains malicious .htaccess files in version 1.7.0. The files contain directives to prevent the execution of certain scripts while allowing execution of known malicious PHP files. If moved outside of the plugin's directory, they may interfere with the proper function of a site.
Affected versions
max 1.7.0.
Status
vulnerable