Vulnerabilities > Awesomemotive > Duplicator > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-26 CVE-2023-6114 Files or Directories Accessible to External Parties vulnerability in Awesomemotive Duplicator
The Duplicator WordPress plugin before 1.5.7.1, Duplicator Pro WordPress plugin before 4.5.14.2 does not disallow listing the `backups-dup-lite/tmp` directory (or the `backups-dup-pro/tmp` directory in the Pro version), which temporarily stores files containing sensitive data.
network
low complexity
awesomemotive CWE-552
7.5