Vulnerabilities > Classyfrieds Project

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2021-24253 Unrestricted Upload of File with Dangerous Type vulnerability in Classyfrieds Project Classyfrieds
The Classyfrieds WordPress plugin through 3.8 does not properly check the uploaded file when an authenticated user adds a listing, only checking the content-type in the request.
network
low complexity
classyfrieds-project CWE-434
6.5