Vulnerabilities > Allow SVG Files Project

DATE CVE VULNERABILITY TITLE RISK
2022-06-20 CVE-2022-1939 Unrestricted Upload of File with Dangerous Type vulnerability in Allow SVG Files Project Allow SVG Files
The Allow svg files WordPress plugin before 1.1 does not properly validate uploaded files, which could allow high privilege users such as admin to upload PHP files even when they are not allowed to
network
low complexity
allow-svg-files-project CWE-434
6.5