Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-54315 | The Uploading SVG, WEBP and ICO files WordPress plugin through 1.2.1 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads. |
Tue, 01 Oct 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-10-01T15:48:08.232Z
Reserved: 2023-08-21T16:22:30.533Z
Link: CVE-2023-4460
Updated: 2024-08-02T07:31:05.452Z
Status : Modified
Published: 2023-12-04T22:15:07.557
Modified: 2026-06-17T06:37:52.730
Link: CVE-2023-4460
No data.
OpenCVE Enrichment
No data.
EUVD