RSS   Vulnerabilities for 'Webp converter for media'   RSS

2022-01-24
 
CVE-2021-25074

CWE-601
 

 
The WebP Converter for Media WordPress plugin before 4.0.3 contains a file (passthru.php) which does not validate the src parameter before redirecting the user to it, leading to an Open Redirect issue

 
2019-08-30
 
CVE-2019-15834

CWE-352
 

 
The webp-converter-for-media plugin before 1.0.3 for WordPress has CSRF.

 


Copyright 2024, cxsecurity.com

 

Back to Top