cleantalk
Vulnerabilities and Security Researches

WP Shortcodes Plugin — Shortcodes Ultimate, CVE-2023-25050

CVE, Research URL

CVE-2023-25050

Published on
May 17, 2024
Research Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vova Anokhin Shortcodes Ultimate allows Absolute Path Traversal.This issue affects Shortcodes Ultimate: from n/a through 5.12.6.
Affected versions
Min -, max 5.12.7.
Status
vulnerable