Migration, Backup, Staging – WPvivid, CVE-2024-7315
- CVE, Research URL
- Application
- Published on
- Oct 02, 2024
- Research Description
- The Migration, Backup, Staging WordPress plugin before 0.9.106 does not use sufficient randomness in the filename that is created when generating a backup, which could be bruteforced by attackers to leak sensitive information about said backups.
- Affected versions
-
Min -, max 0.9.106.
- Status
-
vulnerable